๐บ๐ธ
TPI-Abuse
2026-09-22 00:25:58
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 20:25:53.790793 2026] [security2:error] [pid 16545:tid 16554] [client 34.148.28.129:42172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neotienda.com"] [uri "/.git/config"] [unique_id "arHLEbYTw0gnlOp4fMoqJwAAAIY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
netclix.gr
2026-09-21 23:51:53
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.148.28.129 (US/United States/129.28. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.148.28.129 (US/United States/129.28.148.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-21 20:54:27
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:54:20.213114 2026] [security2:error] [pid 11223:tid 11223] [client 34.148.28.129:53346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "neonmotel.com"] [uri "/.git/config"] [unique_id "arGZfG4ZClG9Ck0aZyTDXgAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-21 18:00:06
(13 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 17:01:26
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 13:01:18.749088 2026] [security2:error] [pid 5636:tid 5636] [client 34.148.28.129:53222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "napaautopartskeokuk.com"] [uri "/.git/config"] [unique_id "arFi3oj2GVpxDtXLCItMagAAAD8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 16:12:55
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:12:50.996562 2026] [security2:error] [pid 19048:tid 19048] [client 34.148.28.129:60778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naominixon.com"] [uri "/.git/config"] [unique_id "arFXgnVa17ZhxKiVoUE6RgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-21 08:09:07
(23 hours ago)
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.148.28.129 - - [21/Sep/2026:10:08:59 +0200] "GET /.git/config HTTP/1.1" 404 19147 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 07:12:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.28.129 (129.28.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 03:12:51.226702 2026] [security2:error] [pid 30842:tid 30842] [client 34.148.28.129:39904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rannals.com"] [uri "/.git/config"] [unique_id "arDY83a8GalhIUIyPfDslgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Skyrider
2026-09-21 06:09:52
(1 day ago)
Nginx: HTTP 4xx probe/scan attempts. Automated fail2ban report.
Bad Web Bot
Web App Attack
๐ฉ๐ช
spyra.rocks
2025-04-28 12:13:30
(1 year ago)
NGINX BadBot
Bad Web Bot