๐บ๐ธ
TPI-Abuse
2026-09-28 15:26:06
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 11:25:58.528872 2026] [security2:error] [pid 1963:tid 1963] [client 34.146.225.125:51904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "funkerecords.com"] [uri "/.git/config"] [unique_id "arqHBjV25Lt7sn-rOiSKnwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 13:51:12
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 09:51:09.439586 2026] [security2:error] [pid 438:tid 438] [client 34.146.225.125:54492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cffragrances.iee-usa.com"] [uri "/.git/config"] [unique_id "arpwzTO6s5F3udYXCamKDQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-28 10:09:01
(3 days ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-28 05:34:21
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 01:34:16.746286 2026] [security2:error] [pid 28306:tid 28306] [client 34.146.225.125:37108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cesstravelvlogs.michaelsabbey.org"] [uri "/.git/config"] [unique_id "arn8WPlGE1db-O5mqrqK7gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-27 00:15:15
(5 days ago)
34.146.225.125 - - [27/Sep/2026:00:14:49 +0000] "POST / HTTP/1.1" 403 40829 "-" "Mozilla/5.0 (X11; L ...
show more
34.146.225.125 - - [27/Sep/2026:00:14:49 +0000] "POST / HTTP/1.1" 403 40829 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.146.225.125"
34.146.225.125 - - [27/Sep/2026:00:14:50 +0000] "POST / HTTP/1.1" 403 40829 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.146.225.125"
34.146.225.125 - - [27/Sep/2026:00:14:50 +0000] "GET /.git/config HTTP/1.1" 403 18049 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.146.225.125"
34.146.225.125 - - [27/Sep/2026:00:14:51 +0000] "GET /.env HTTP/1.1" 403 18049 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.146.225.125"
34.146.225.125 - - [27/Sep/2026:00:14:51 +0000] "GET /.env.local HTTP/1.1" 403 18049 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML
...
show less
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-26 21:03:57
(5 days ago)
(mod_security) mod_security (id:949110) triggered by 34.146.225.125 (JP/Japan/125.225.146.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.146.225.125 (JP/Japan/125.225.146.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 20:25:33
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 16:25:27.172027 2026] [security2:error] [pid 21835:tid 21835] [client 34.146.225.125:42844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.discountweddinginvitationsonline.com"] [uri "/.git/config"] [unique_id "argqN2ng8PgOzTp7o-yCEwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-09-25 21:20:33
(6 days ago)
[FriSep2523:20:31.5834392026][security2:error][pid1399610:tid1399706][client34.146.225.125:0]ModSecu ...
show more
[FriSep2523:20:31.5834392026][security2:error][pid1399610:tid1399706][client34.146.225.125:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.grigorov.ch.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"arbln5_QALmA35mLu2ZZ7wAAAMg\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-25 07:16:07
(1 week ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-25 03:20:02
(1 week ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-09-25 00:55:10
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
Site.eu
2026-09-24 20:00:47
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-24 18:54:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.225.125 (125.225.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:54:51.501841 2026] [security2:error] [pid 9784:tid 9784] [client 34.146.225.125:48280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.laurengardner.org"] [uri "/.git/config"] [unique_id "arVx-6fO3w8RAbDviTzUYAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-09-24 05:10:33
(1 week ago)
Automated WAF report: 200-300 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 14:29:13
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack