๐บ๐ธ
TPI-Abuse
2026-09-29 19:41:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:41:21.609478 2026] [security2:error] [pid 30972:tid 30972] [client 34.128.81.226:58876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.guernsey-boat-registration.com"] [uri "/.git/config"] [unique_id "arwUYdWYJD51VSBnBV-w0AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
Klaverstyn
2026-09-28 05:26:44
(3 days ago)
Cross-vhost secrets/RCE probing campaign
Web App Attack
Hacking
Anonymous
2026-09-27 00:40:17
(5 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:26:50
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:26:44.218840 2026] [security2:error] [pid 30055:tid 30055] [client 34.128.81.226:56998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bethbornsteindunnington.com"] [uri "/.git/config"] [unique_id "arfkNJjaPoia1dViDWM7UgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:09:27
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:09:19.417135 2026] [security2:error] [pid 28761:tid 28761] [client 34.128.81.226:49318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bethanpearce.com"] [uri "/.git/config"] [unique_id "arfgH7vwEFBDQfKaNTcDbgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 19:57:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 15:56:54.849561 2026] [security2:error] [pid 8580:tid 8580] [client 34.128.81.226:55762] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.untraceable.org"] [uri "/.git/config"] [unique_id "arWAhn0W6fpFAI-uJVUiHwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 09:15:57
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ง๐ช
madeit
2026-09-23 12:43:35
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 01:06:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 21:06:33.047477 2026] [security2:error] [pid 20829:tid 20829] [client 34.128.81.226:53598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wildatartgallery.jimwilsongallery.com"] [uri "/.git/config"] [unique_id "arHUmdt7KcEw72y3SlZAuwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 00:49:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:49:17.191202 2026] [security2:error] [pid 15153:tid 15153] [client 34.128.81.226:33890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wilcoxlawllc.ewingmissouri.com"] [uri "/.git/config"] [unique_id "arHQjX9Rb5pynDmBnwKyuAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 22:43:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 18:43:47.579669 2026] [security2:error] [pid 27329:tid 27329] [client 34.128.81.226:49548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.weismanovens.daveweisman.com"] [uri "/.git/config"] [unique_id "arGzI7I_4NPXcXj0HzDjwAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
penguin-solutions.at
2026-09-21 19:17:23
(1 week ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 15:44:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.128.81.226 (226.81.128.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:44:34.011305 2026] [security2:error] [pid 26947:tid 27035] [client 34.128.81.226:44474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wegelin.kylight.com"] [uri "/.git/config"] [unique_id "arFQ4kNnegRj2kknK6gJ8QAAAZQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
venus.launch.bz
2026-09-20 22:47:04
(1 week ago)
(mod_security) mod_security triggered on hostname [redacted] 34.128.81.226 (ID/Indonesia/226.81.128. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.128.81.226 (ID/Indonesia/226.81.128.34.bc.googleusercontent.com)
show less
SQL Injection
๐ช๐ธ
robotstxt
2026-09-20 20:41:35
(1 week ago)
34.128.81.226 - - [20/Sep/2026:20:40:57 +0000] "GET /.env HTTP/1.1" 403 15479 "-" "Mozilla/5.0 (X11; ...
show more
34.128.81.226 - - [20/Sep/2026:20:40:57 +0000] "GET /.env HTTP/1.1" 403 15479 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.128.81.226"
34.128.81.226 - - [20/Sep/2026:20:40:58 +0000] "GET /.env.local HTTP/1.1" 403 15479 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.128.81.226"
34.128.81.226 - - [20/Sep/2026:20:40:59 +0000] "GET /.env.production HTTP/1.1" 403 15479 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.128.81.226"
34.128.81.226 - - [20/Sep/2026:20:41:00 +0000] "GET /.env.staging HTTP/1.1" 403 15479 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.128.81.226"
34.128.81.226 - - [20/Sep/2026:20:41:01 +0000] "GET /.env.development HTTP/1.1" 403 15479 "-" "Mozilla/5.0 (X11; Linux x86_64) Appl
...
show less
Web App Attack