🇺🇸
TPI-Abuse
2026-09-06 05:55:17
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 01:55:10.428052 2026] [security2:error] [pid 19319:tid 19319] [client 34.158.39.36:51274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toepert.com"] [uri "/var/www/.git/config"] [unique_id "ap0APtXMMgsdleZvvObKqAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:16:03
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:15:55.497727 2026] [security2:error] [pid 28953:tid 28953] [client 34.158.39.36:49956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigkevsperformance.com"] [uri "/backend/.git/config"] [unique_id "apza68w6yk0ckRRarxRbjAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
✨
2026-09-06 03:11:09
(6 hours ago)
Domain : bolgarclarke.uk
Rule : config
2026-09-06 03:09:06 ***hidden-privacy*** GET /.git/config - 4 ...
show more
Domain : bolgarclarke.uk
Rule : config
2026-09-06 03:09:06 ***hidden-privacy*** GET /.git/config - 443 - 34.158.39.36 HTTP/1.1 crusader-worker/1.0 - bolgarclarke.uk 404 8 0 1541 98 441 - -
show less
Hacking
SQL Injection
🇺🇸
TPI-Abuse
2026-09-06 02:19:12
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:19:08.079630 2026] [security2:error] [pid 19763:tid 19763] [client 34.158.39.36:45794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pundtlaw.com"] [uri "/wordpress/.git/config"] [unique_id "apzNnKcKTMgzMVKQlhziTgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-06 00:29:30
(9 hours ago)
7.058 requests with url.path *.git/*
Brute-Force
Bad Web Bot
🇫🇷
Little Iguana
2026-09-05 22:38:47
(10 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
🇫🇷
dynamix
2026-09-05 09:56:57
(23 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
e.fierstra
2026-09-04 21:22:56
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇨🇭
Origon
2026-09-04 19:21:25
(1 day ago)
http-sensitive-files - IP: 34.158.39.36 - time="2026-09-04T21:21:24+02:00" level=info msg="(555f66b ...
show more
http-sensitive-files - IP: 34.158.39.36 - time="2026-09-04T21:21:24+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.158.39.36 (SG/396982) : 4h ban on Ip 34.158.39.36" module=db
show less
Web App Attack
🇩🇪
Viveronese
2026-09-04 19:09:29
(1 day ago)
HTTP vulnerability scanning
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:47:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:47:43.743256 2026] [security2:error] [pid 13036:tid 13036] [client 34.158.39.36:33306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jabbosjingles.com"] [uri "/site/.git/config"] [unique_id "aproH5-OnHQs_iwxbhTYLwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:46:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.39.36 (36.39.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:46:07.811186 2026] [security2:error] [pid 26493:tid 26493] [client 34.158.39.36:46612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thenorwoods.name"] [uri "/.git/config"] [unique_id "apqvfxs4fEpJIyKqY0HfdAAAADw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 11:32:17
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇩🇪
ISPLtd
2026-09-04 10:13:33
(1 day ago)
Sep 4 07:13:33 34.158.39.36 TCP SPT=34736 DPT=80 SYN
Sep 4 07:13:33 34.158.39.36 TCP SPT=34756 DPT ...
show more
Sep 4 07:13:33 34.158.39.36 TCP SPT=34736 DPT=80 SYN
Sep 4 07:13:33 34.158.39.36 TCP SPT=34756 DPT=80 SYN
Sep 4 07:13:33 34.158.39.36 TCP SPT=34782 DPT=80 SYN
...
show less
DDoS Attack
🇩🇪
raph
2026-09-04 09:27:25
(2 days ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack