๐บ๐ธ
TPI-Abuse
2026-09-02 19:27:26
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 15:27:18.283640 2026] [security2:error] [pid 29667:tid 29667] [client 34.143.163.134:49544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zdx.jeranny.com"] [uri "/.git/config"] [unique_id "aph4lqFPfpAjY187nV8u9wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-02 19:08:57
(1 hour ago)
cloudlinux2 fail2ban: 2026-09-02 21:04:32,109 fail2ban.filter [1472]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-02 21:04:32,109 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 129.151.138.12 - 2026-09-02 21:04:31cloudlinux2 fail2ban: 2026-09-02 21:04:30,701 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 129.151.138.12 - 2026-09-02 21:04:30cloudlinux2 fail2ban: 2026-09-02 21:04:27,958 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 185.139.48.120 - 2026-09-02 21:04:27cloudlinux2 fail2ban: 2026-09-02 21:04:32,225 fail2ban.actions [1472]: NOTICE [plesk-wordpress] Ban 129.151.138.12cloudlinux2 fail2ban: 2026-09-02 21:04:28,101 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 129.151.138.12 - 2026-09-02 21:04:27cloudlinux2 fail2ban: 2026-09-02 21:04:32,227 fail2ban.filter [1472]: INFO [recidive] Found 129.151.138.12 - 2026-09-02 21:04:32cloudlinux2 fail2ban: 2026-09-02 21:06:46,720 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.143.163.134 - 2026-09-02 21:06:46cloudlinux2 fail2ban: 2026-09-0
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 19:08:45
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 15:08:37.203168 2026] [security2:error] [pid 20517:tid 20517] [client 34.143.163.134:50598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zaccarealestate.com.saadeh.ws"] [uri "/.git/config"] [unique_id "aph0NQSNgSVkFUKH9K615AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 18:52:58
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:52:54.004255 2026] [security2:error] [pid 13267:tid 13267] [client 34.143.163.134:37406] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.yuliana.kronrod.com"] [uri "/.git/config"] [unique_id "aphwho4n3EAbhxYgKNfsSgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 18:36:16
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:36:11.536336 2026] [security2:error] [pid 3999:tid 4074] [client 34.143.163.134:44496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.yourpersonalbusinessplan.teritemme.com"] [uri "/.git/config"] [unique_id "aphsm8jITcX4OkxqLBFbdgAAAYE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-02 18:31:42
(2 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
JustMeHere
2026-09-02 18:24:35
(2 hours ago)
[Wed Sep 02 14:24:30.854481 2026] [security2:error] [pid 1342:tid 1381] [client 34.143.163.134:47896 ...
show more
[Wed Sep 02 14:24:30.854481 2026] [security2:error] [pid 1342:tid 1381] [client 34.143.163.134:47896] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.yorknation.com"] [uri "/.git/config"] [unique_id "aphp3mN-eyWaC7MkSi1MMQAAAMs"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 18:17:59
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 14:17:53.717558 2026] [security2:error] [pid 9231:tid 9231] [client 34.143.163.134:40856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.yoga.gevieworld.com"] [uri "/.git/config"] [unique_id "aphoUV6P0hNWBmQ80ZMIjwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 18:15:57
(2 hours ago)
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐ซ๐ท
ELYAZ
2026-09-02 18:14:12
(2 hours ago)
(y3) Failed access -byebye- from 34.143.163.134 (SG/Singapore/134.163.143.34.bc.googleusercontent.co ...
show more
(y3) Failed access -byebye- from 34.143.163.134 (SG/Singapore/134.163.143.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐จ๐ญ
YF
2026-09-02 18:00:51
(2 hours ago)
Git config exposure probe
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 17:56:59
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 17:56:21
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:56:14.971278 2026] [security2:error] [pid 28294:tid 28401] [client 34.143.163.134:43622] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.yesnet.helppeopleshare.net"] [uri "/.git/config"] [unique_id "aphjPolkRdM1N6FQle0yMwAAARM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 17:38:17
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.143.163.134 (134.163.143.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:38:12.915927 2026] [security2:error] [pid 1128:tid 1128] [client 34.143.163.134:48812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.yankeepeddlers.newcitypark.com"] [uri "/.git/config"] [unique_id "aphfBIvxIA2RHfjkksmueAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-02 17:31:54
(3 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 2 domain(s) in 0s
Web App Attack