Anonymous
2026-10-02 14:06:39
(6 days ago)
Trying to access config files
Web App Attack
Anonymous
2026-10-01 13:06:24
(1 week ago)
Trying to access config files
Web App Attack
Anonymous
2026-09-30 06:06:07
(1 week ago)
Trying to access config files
Web App Attack
Anonymous
2026-09-29 07:41:11
(1 week ago)
34.142.234.26 - - [29/Sep/2026:07:41:10 +0000] "GET /.git/config HTTP/1.1" 403 8164 "-" "Mozilla/5.0 ...
show more
34.142.234.26 - - [29/Sep/2026:07:41:10 +0000] "GET /.git/config HTTP/1.1" 403 8164 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
paulo.apoloni
2026-09-29 04:12:34
(1 week ago)
34.142.234.26 - - [29/Sep/2026:01:12:28 -0300] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (M ...
show more
34.142.234.26 - - [29/Sep/2026:01:12:28 -0300] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [29/Sep/2026:01:12:29 -0300] "GET /.env HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [29/Sep/2026:01:12:32 -0300] "GET /.env.bak HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [29/Sep/2026:01:12:33 -0300] "GET /.env.backup HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [29/Sep/2026:01:12:34 -0300] "GET /.env.save HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Sa
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 07:09:46
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 03:09:39.256459 2026] [security2:error] [pid 7703:tid 7703] [client 34.142.234.26:44316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adults-biz.com"] [uri "/.git/config"] [unique_id "aroSs6y1fYPGQOvawS9wvQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 04:21:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 00:21:15.569176 2026] [security2:error] [pid 20280:tid 20392] [client 34.142.234.26:37450] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adultbaja.com"] [uri "/.git/config"] [unique_id "arnrOzTV_ZrPS5HxYEpefQAAAdc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-27 21:59:58
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-26.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-26 15:36:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:36:52.290838 2026] [security2:error] [pid 4580:tid 4580] [client 34.142.234.26:34960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.moonfamilies.com"] [uri "/.git/config"] [unique_id "arfmlEmLQE1a2mtRR-gabQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:05:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.142.234.26 (26.234.142.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:05:28.249324 2026] [security2:error] [pid 27538:tid 27538] [client 34.142.234.26:40792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.moodyauto.com"] [uri "/.git/config"] [unique_id "arffOG55FaTwXyERfv3dYwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
SystemAdmin
2026-09-26 06:40:24
(1 week ago)
Doing bad things...
Web App Attack
๐ฉ๐ช
Nevermind
2026-09-24 18:11:23
(2 weeks ago)
34.142.234.26 - - [24/Sep/2026:20:11:22 +0200] "GET /.git/config HTTP/1.1" 403 6285 "-" "Mozilla/5.0 ...
show more
34.142.234.26 - - [24/Sep/2026:20:11:22 +0200] "GET /.git/config HTTP/1.1" 403 6285 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [24/Sep/2026:20:11:23 +0200] "GET /.env HTTP/1.1" 403 6285 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [24/Sep/2026:20:11:23 +0200] "GET /.env.local HTTP/1.1" 403 6285 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.142.234.26 - - [24/Sep/2026:20:11:23 +0200] "GET /.env.production HTTP/1.1" 403 6285 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-09-24 18:08:28
(2 weeks ago)
$f2bV_matches
Brute-Force
Web App Attack
๐ฉ๐ช
filstal.org
2026-09-24 16:32:53
(2 weeks ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
๐ฉ๐ช
rh24
2026-09-24 15:00:47
(2 weeks ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.142.234.26 (SG/Singapore/26.234.142.34 ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.142.234.26 (SG/Singapore/26.234.142.34.bc.googleusercontent.com)
show less
Hacking