๐บ๐ธ
TPI-Abuse
2026-09-21 23:39:51
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:39:47.502334 2026] [security2:error] [pid 10685:tid 10685] [client 34.158.202.86:49482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nashtechnologies.nashes.net"] [uri "/.git/config"] [unique_id "arHAQ3iTOj95Ef8R8Udg-wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 22:48:59
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 18:48:53.535669 2026] [security2:error] [pid 19023:tid 19023] [client 34.158.202.86:47968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.musicpolitan.vittariadesign.com"] [uri "/.git/config"] [unique_id "arG0VdYez4bhvCYUPLlz0QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-21 22:12:55
(5 hours ago)
34.158.202.86 - - [21/Sep/2026:22:12:12 +0000] "POST / HTTP/1.1" 403 33022 "-" "Mozilla/5.0 (Windows ...
show more
34.158.202.86 - - [21/Sep/2026:22:12:12 +0000] "POST / HTTP/1.1" 403 33022 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.158.202.86"
34.158.202.86 - - [21/Sep/2026:22:12:13 +0000] "POST / HTTP/1.1" 403 33022 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.158.202.86"
34.158.202.86 - - [21/Sep/2026:22:12:14 +0000] "GET /.git/config HTTP/1.1" 403 29108 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.158.202.86"
34.158.202.86 - - [21/Sep/2026:22:12:16 +0000] "GET /.env HTTP/1.1" 403 31 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.158.202.86"
34.158.202.86 - - [21/Sep/2026:22:12:17 +0000] "GET /.env.local HTTP/1.1" 403 29126 "-" "Mozilla/5.0 (Windows NT 10.0;
...
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-21 21:32:12
(6 hours ago)
[cb-13al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-13al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.158.202.86 - - [21/Sep/2026:23:32:10 +0200] "GET /.git/config HTTP/1.1" 301 407 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 21:07:57
(6 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.158.202.86 (86.202.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.158.202.86 (86.202.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:07:52.071750 2026] [security2:error] [pid 12522:tid 12522] [client 34.158.202.86:58262] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.music.freedrm.org"] [uri "/.git/config"] [unique_id "arGcqBLqBijFO0LnjsvYwwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-21 14:31:57
(13 hours ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-21 03:27:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 23:27:28.104247 2026] [security2:error] [pid 10909:tid 10909] [client 34.158.202.86:48670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.psf.salvoni.org"] [uri "/.git/config"] [unique_id "arCkIMMJeBTRx0Y_t2FQ5wAAAD4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-21 02:10:09
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
โจ
2026-09-21 01:45:09
(1 day ago)
Domain : pscript.co.uk
Rule : config
2026-09-21 01:44:32 W3SVC292 PLESK72 79.171.34.85 GET /.git/con ...
show more
Domain : pscript.co.uk
Rule : config
2026-09-21 01:44:32 W3SVC292 PLESK72 79.171.34.85 GET /.git/config - 443 - 34.158.202.86 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - - www.pscript.co.uk 404 8 0 1291 285 266 - -
show less
Hacking
SQL Injection
๐ฎ๐น
VHosting
2026-09-20 20:05:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-20 19:13:02
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 17:18:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:18:47.219836 2026] [security2:error] [pid 11256:tid 11287] [client 34.158.202.86:58330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pruebas.emehache.net"] [uri "/.git/config"] [unique_id "arAVdwuggv6v3hsMMRzTVAAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 16:59:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.202.86 (86.202.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 12:59:30.841812 2026] [security2:error] [pid 9602:tid 9602] [client 34.158.202.86:46776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.primestatepainting.com.darkcodedesign.net"] [uri "/.git/config"] [unique_id "arAQ8t7DPlKErYDiBBoV0wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack