๐บ๐ธ
TPI-Abuse
2026-09-29 05:09:33
(15 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 01:09:30.026748 2026] [security2:error] [pid 26259:tid 26259] [client 34.148.149.153:41868] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mimrg.net|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mimrg.net"] [uri "/.env.bak"] [unique_id "artICtIYcvImB-YyMnFDgQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 00:17:44
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:17:40.896200 2026] [security2:error] [pid 7838:tid 7838] [client 34.148.149.153:54608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kaldaragroup.com"] [uri "/.git/config"] [unique_id "arsDpL3Tf3G-nzzz-Eqi3wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-28 05:49:16
(1 day ago)
Scanning for web/db/file exploits on www.mgbetimmeringen.nl
SQL Injection
Bad Web Bot
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-27 15:49:14
(2 days ago)
34.148.149.153 - - [27/Sep/2026:17:49:11 +0200] "GET /.env.old HTTP/1.1" 404 520 "-" "Mozilla/5.0 (X ...
show more
34.148.149.153 - - [27/Sep/2026:17:49:11 +0200] "GET /.env.old HTTP/1.1" 404 520 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:17:49:11 +0200] "GET /.env.sample HTTP/1.1" 404 520 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:17:49:11 +0200] "GET /.env.example HTTP/1.1" 404 520 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:17:49:12 +0200] "GET /.env.dev HTTP/1.1" 404 520 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:17:49:12 +0200] "GET /.env.prod HTTP/1.1" 404 520 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:17:49:12 +0200]
show less
Web App Attack
Hacking
๐ฉ๐ช
Blexyel
2026-09-27 15:41:37
(2 days ago)
34.148.149.153 - - [27/Sep/2026:17:41:36 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 ...
show more
34.148.149.153 - - [27/Sep/2026:17:41:36 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
Anonymous
2026-09-27 06:48:11
(2 days ago)
34.148.149.153 - - [27/Sep/2026:08:48:09 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Lin ...
show more
34.148.149.153 - - [27/Sep/2026:08:48:09 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:08:48:09 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:08:48:10 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:08:48:10 +0200] "GET /.git/config HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:08:48:10 +0200] "GET /.env HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.148.149.153 - - [27/Sep/2026:08:48:10 +0200] "GET /.env.local HTTP/1.1" 40
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-27 03:54:14
(2 days ago)
20 attempts against mh-misbehave-ban on mensa
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-26 06:47:12
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-25 19:31:33
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 15:31:29.524704 2026] [security2:error] [pid 1247:tid 1247] [client 34.148.149.153:36738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrobertdesignbuild.com"] [uri "/.git/config"] [unique_id "arbMEc1QmwDCUWDEzqApWQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-25 08:03:23
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
dynamix
2026-09-25 07:23:04
(4 days ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-25 06:16:48
(4 days ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-09-25 05:17:49
(4 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-09-24 06:04:20
(5 days ago)
10.497 4xx requests in 1 hour (2w1d7h)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-24 05:51:51
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.149.153 (153.149.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 01:51:45.231597 2026] [security2:error] [pid 7220:tid 7220] [client 34.148.149.153:37550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mijnlevensverhaal.com"] [uri "/.git/config"] [unique_id "arS6cYULPPFLWfl1epJwiQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack