๐บ๐ธ
TPI-Abuse
2026-09-29 19:35:52
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.139.204.93 (93.204.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.139.204.93 (93.204.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 15:35:44.956049 2026] [security2:error] [pid 8068:tid 8068] [client 34.139.204.93:36860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.westerncarolinabass.org"] [uri "/.git/config"] [unique_id "arwTEMwcwewwsSBQaTc33QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
sigurg
2026-09-29 14:12:15
(13 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-29 00:00:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.139.204.93 (93.204.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.139.204.93 (93.204.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:00:29.983747 2026] [security2:error] [pid 10572:tid 10572] [client 34.139.204.93:44582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.maidsinmalta.com"] [uri "/.git/config"] [unique_id "arr_ne6nLeJBDEBDIU3U7AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-26 09:52:39
(3 days ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
mnsf
2026-09-26 09:05:07
(3 days ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
Anonymous
2026-09-25 20:15:01
(4 days ago)
suspicious request in access.log
Web App Attack
๐ง๐ช
taivas.nl
2026-09-25 04:33:13
(4 days ago)
Many_bad_calls
Web App Attack
๐ง๐ช
taivas.nl
2026-09-25 04:02:10
(4 days ago)
Bad_requests
Bad Web Bot
๐ฉ๐ช
FD-IX
2026-09-25 03:02:02
(5 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 02:40:38
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.139.204.93 (93.204.139.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.139.204.93 (93.204.139.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 22:40:33.905963 2026] [security2:error] [pid 29455:tid 29455] [client 34.139.204.93:57226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "opere.com"] [uri "/.git/config"] [unique_id "arXfIeP233p2UAdlPVl7OAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Feelautom
2026-09-24 04:12:36
(5 days ago)
[FeelAutom Auto-Ban] PathScan: /.env.backup (Score: 200)
Port Scan
๐ณ๐ฑ
Savvii
2026-09-24 03:53:51
(5 days ago)
20 attempts against mh_ha-misbehave-ban on pf221113
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 16:37:13
(1 week ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฉ๐ช
MarkGGN
2026-09-22 00:13:15
(1 week ago)
Web attack. 34.139.204.93 - - [22/Sep/2026:02:13:15 +0200] "GET /info.php HTTP/1.1" 401 574 "-" "Moz ...
show more
Web attack. 34.139.204.93 - - [22/Sep/2026:02:13:15 +0200] "GET /info.php HTTP/1.1" 401 574 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.139.204.93 - - [22/Sep/2026:02:13:15 +0200] "GET /pi.php HTTP/1.1" 401 574 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-09-21 22:12:04
(1 week ago)
2026/09/21 23:11:50 [error] 325888#325888: *1148809 access forbidden by rule, client: 34.139.204.93, ...
show more
2026/09/21 23:11:50 [error] 325888#325888: *1148809 access forbidden by rule, client: 34.139.204.93, server: operadotejo.org, request: "GET /.env HTTP/2.0", host: "operadotejo.org"
34.139.204.93 - - [21/Sep/2026:23:11:50 +0100] "GET /.env HTTP/2.0" 403 138 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
2026/09/21 23:12:02 [error] 325888#325888: *1148892 access forbidden by rule, client: 34.139.204.93, server: operadotejo.org, request: "GET /app/.env HTTP/2.0", host: "operadotejo.org"
show less
Brute-Force
Web App Attack