๐บ๐ธ
TPI-Abuse
2026-09-20 10:33:58
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:33:52.337007 2026] [security2:error] [pid 8605:tid 8605] [client 34.131.111.226:46760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3dworld-wide.com"] [uri "/.git/config"] [unique_id "aq-2kEGYHBLe1LijBooDzAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 09:51:38
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 05:51:32.563051 2026] [security2:error] [pid 29898:tid 29898] [client 34.131.111.226:37402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3dsportschannel.com"] [uri "/.git/config"] [unique_id "aq-spGdVpStsboRp8RF-ZgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 08:58:27
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 04:58:22.803565 2026] [security2:error] [pid 8884:tid 8884] [client 34.131.111.226:54444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3dprinting.raynernet.com"] [uri "/.git/config"] [unique_id "aq-gLs1UEOlNUERn9bdirAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Zundapper
2026-09-20 08:09:06
(20 hours ago)
34.131.111.226 - - [20/Sep/2026:10:09:00 +0200] "GET /phpinfo HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Ma ...
show more
34.131.111.226 - - [20/Sep/2026:10:09:00 +0200] "GET /phpinfo HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [20/Sep/2026:10:09:02 +0200] "GET /info HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [20/Sep/2026:10:09:04 +0200] "GET /_profiler/phpinfo HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [20/Sep/2026:10:09:04 +0200] "GET /_environment HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [20/Sep/2026:10:09:05 +0200] "GET /webroot/index.php/_environment HTTP/1.1" 404 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.
...
show less
Web App Attack
Port Scan
๐ฎ๐น
VHosting
2026-09-19 15:10:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ซ๐ท
Catalin Negru
2026-09-19 12:24:06
(1 day ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
๐ซ๐ท
dynamix
2026-09-18 12:41:09
(2 days ago)
Automated web vulnerability and path enumeration scan with excessive 404 requests
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-18 06:42:30
(2 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-18 06:42 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-17 15:48:04
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-17 04:22:17
(4 days ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.131.111.226 - - [17/Sep/2026:06:22:01 +0200] "GET /.git/config HTTP/1.1" 302 520 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-17 03:04:09
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:02:54
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.111.226 (226.111.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:02:46.502679 2026] [security2:error] [pid 18748:tid 18748] [client 34.131.111.226:51918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "compliancedepts.com"] [uri "/.git/config"] [unique_id "aqtYVu5-RsBNVfDlf0xp8gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
electronico
2026-09-17 02:26:47
(4 days ago)
34.131.111.226 - - [17/Sep/2026:13:26:44 +1100] "GET /.git/config HTTP/1.1" 404 2104 "-" "Mozilla/5. ...
show more
34.131.111.226 - - [17/Sep/2026:13:26:44 +1100] "GET /.git/config HTTP/1.1" 404 2104 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [17/Sep/2026:13:26:45 +1100] "GET /.env HTTP/1.1" 404 2104 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [17/Sep/2026:13:26:45 +1100] "GET /.env.local HTTP/1.1" 404 2104 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [17/Sep/2026:13:26:45 +1100] "GET /.env.production HTTP/1.1" 404 2104 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.131.111.226 - - [17/Sep/2026:13:26:45 +1100] "GET /.env.staging HTTP/1.1" 404 2104 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, li
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-09-17 02:23:27
(4 days ago)
crowdsecurity/http-sensitive-files detected by CrowdSec
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 12:52:54
(4 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack