๐บ๐ธ
Epimetheus
2026-09-16 05:54:35
(2 hours ago)
Unauthorized access attempts:
[GET] /debug.php
[GET] /test/phpinfo.php
[GET] /server-info.php
[GET] ...
show more
Unauthorized access attempts:
[GET] /debug.php
[GET] /test/phpinfo.php
[GET] /server-info.php
[GET] /phpinfo
[GET] /php-info.php
[GET] /brevo/.env
[GET] /.env.old
[GET] /.env.docker
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-16 04:41:14
(3 hours ago)
CloudLinux/Plesk alert - host=cloudlinux dominio=mitan.it ip=34.130.130.94 richieste=744 rischio=ALT ...
show more
CloudLinux/Plesk alert - host=cloudlinux dominio=mitan.it ip=34.130.130.94 richieste=744 rischio=ALTO score=17 motivi=molte_richieste,diverse_uri_uniche,molti_404,path_sospetti,api,poco_statico,dinamico cat_id=21,19 periodo=10min
show less
Web App Attack
Bad Web Bot
Anonymous
2026-09-16 03:53:55
(4 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 03:19:09
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:19:05.284262 2026] [security2:error] [pid 23356:tid 23356] [client 34.130.130.94:44018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "misterflores.com"] [uri "/.git/config"] [unique_id "aqoKqdR-0bt1IGzRoQ4XbAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 22:40:16
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 18:40:11.863258 2026] [security2:error] [pid 7154:tid 7154] [client 34.130.130.94:50256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sullico.com"] [uri "/.git/config"] [unique_id "aqnJSzUFQmHSQMUQ7tNWpQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
Abuse Buster
2026-09-15 17:47:36
(14 hours ago)
34.130.130.94 - [15/Sep/2026:19:47:33 +0200] "GET /.git/config HTTP/2.0" 403 548 "-" "Mozilla/5.0 (W ...
show more
34.130.130.94 - [15/Sep/2026:19:47:33 +0200] "GET /.git/config HTTP/2.0" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" Connecting ip: 34.130.130.94 Forwared for: 34.130.130.94
34.130.130.94 - [15/Sep/2026:19:47:34 +0200] "GET /.env HTTP/2.0" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" Connecting ip: 34.130.130.94 Forwared for: 34.130.130.94
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-15 15:51:11
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-15 12:08:30
(20 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:18:03
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:17:58.753004 2026] [security2:error] [pid 10891:tid 10907] [client 34.130.130.94:39544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trident-environmental.com"] [uri "/.git/config"] [unique_id "aqkpZu2ZnbznyXAGpM7A6AAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-09-15 11:03:42
(21 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 10:15:04
(22 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 06:00:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.130.130.94 (94.130.130.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 02:00:22.552015 2026] [security2:error] [pid 18759:tid 18759] [client 34.130.130.94:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.earscript.net"] [uri "/.git/config"] [unique_id "aqje9juwx4iUiMI-TiU-3AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-15 03:54:25
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking