πΊπΈ
TPI-Abuse
2026-09-01 00:36:35
(18 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 20:36:30.680365 2026] [security2:error] [pid 30769:tid 30769] [client 34.152.6.72:35064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "andrewrmarshall.com"] [uri "/.git/config"] [unique_id "apYeDtBbIfboDetqRXykeQAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-31 22:01:02
(2 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-30.
show less
Web App Attack
SSH
Hacking
π§πͺ
taivas.nl
2026-08-31 04:34:25
(20 hours ago)
Many_bad_calls
Web App Attack
π«π·
Octopuce
2026-08-31 04:16:46
(20 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 04:03:20
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:03:15.262361 2026] [security2:error] [pid 15500:tid 15506] [client 34.152.6.72:60780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antinats.com"] [uri "/.git/config"] [unique_id "apT9A2fffb1shkAVnPeIlgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 03:56:45
(20 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
π³π±
Site.eu
2026-08-30 18:35:05
(1 day ago)
Excessive multi-domain requests
Brute-Force
πΊπΈ
TPI-Abuse
2026-08-30 18:08:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 14:08:16.801055 2026] [security2:error] [pid 29728:tid 29728] [client 34.152.6.72:36728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.herndonms5k.nilestree.com"] [uri "/.git/config"] [unique_id "apRxkPqeNyyehxPgw8PhAAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-08-30 18:07:49
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
π§πͺ
taivas.nl
2026-08-30 17:32:12
(1 day ago)
Bad_requests
Bad Web Bot
π¬π§
consul.to
2026-08-30 17:11:16
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
π³π±
Mangelot Hosting
2026-08-30 16:37:00
(1 day ago)
(php_susp_dir) srv102 PHP Suspicious Directory 34.152.6.72 (CA/Canada/72.6.152.34.bc.googleuserconte ...
show more
(php_susp_dir) srv102 PHP Suspicious Directory 34.152.6.72 (CA/Canada/72.6.152.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-30 15:13:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 11:12:57.666702 2026] [security2:error] [pid 8474:tid 8474] [client 34.152.6.72:41486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heihu.org.cn.englishmagic.us"] [uri "/.git/config"] [unique_id "apRIeXd-mdctJIqPS6W8WgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
big-cloud.nl
2026-08-30 13:40:35
(1 day ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-30 12:35:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.6.72 (72.6.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 08:35:40.408012 2026] [security2:error] [pid 2386212:tid 2386224] [client 34.152.6.72:54602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hcvideo.gryphix.com"] [uri "/.git/config"] [unique_id "apQjnK3zJ9idyuypO5oWUQAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack