Anonymous
2026-09-29 06:07:15
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-29 05:51:45
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:13:06
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:13:00.212490 2026] [security2:error] [pid 20105:tid 20105] [client 34.158.58.53:41792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tonylai.com"] [uri "/.git/config"] [unique_id "arlqvNqDqkJRvSx40-wCrAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-26 21:29:01
(3 days ago)
20 attempts against mh_ha-misbehave-ban on tin
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 16:14:49
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 12:14:28.005962 2026] [security2:error] [pid 30577:tid 30577] [client 34.158.58.53:56778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.radtraininginc.com"] [uri "/.env.docker"] [unique_id "arfvZLz5td3bAeJIyAF45gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:41:11
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:41:04.627970 2026] [security2:error] [pid 1387:tid 1387] [client 34.158.58.53:36648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.radixtx.com"] [uri "/.git/config"] [unique_id "arfnkLZ8GOH__Kas8mj6mwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 18:22:05
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 14:21:58.326409 2026] [security2:error] [pid 29179:tid 29179] [client 34.158.58.53:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backend.grainavi.com"] [uri "/.git/config"] [unique_id "ara7xn1zbPmQioQ6qIgojQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-09-24 22:23:57
(5 days ago)
Brute-Force
Web App Attack
๐ฉ๐ช
macrob
2026-09-24 18:47:08
(6 days ago)
2026/09/24 18:47:06 [error] 2590217#2590217: *32684378 access forbidden by rule, client: 34.158.58.5 ...
show more
2026/09/24 18:47:06 [error] 2590217#2590217: *32684378 access forbidden by rule, client: 34.158.58.53, server: fn.binixo.es, request: "GET /.git/config HTTP/2.0", host: "centraledespme.wellbin.org"
2026/09/24 18:47:06 [error] 2590220#2590220: *32684367 access forbidden by rule, client: 34.158.58.53, server: fn.binixo.es, request: "GET /.env HTTP/2.0", host: "centraledespme.wellbin.org"
2026/09/24 18:47:06 [error] 2590217#2590217: *32684392 access forbidden by rule, client: 34.158.58.53, server: fn.binixo.es, request: "GET /.env.local HTTP/2.0", host: "centraledespme.wellbin.org"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 17:53:58
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 13:53:49.753856 2026] [security2:error] [pid 7392:tid 7392] [client 34.158.58.53:41186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "centralbaptistalcoa.org"] [uri "/.git/config"] [unique_id "arVjrYepkCCQGa2mwNdrbAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-09-23 12:23:21
(1 week ago)
2026/09/23 13:22:42 [error] 325888#325888: *1578722 access forbidden by rule, client: 34.158.58.53, ...
show more
2026/09/23 13:22:42 [error] 325888#325888: *1578722 access forbidden by rule, client: 34.158.58.53, server: [redacted], request: "GET /autodiscover.xml/.env HTTP/1.1", host: "[redacted]"
2026/09/23 13:23:19 [error] 325888#325888: *1578722 access forbidden by rule, client: 34.158.58.53, server: [redacted], request: "GET /autodiscover.xml/app/.env HTTP/1.1", host: "[redacted]"
2026/09/23 13:23:19 [error] 325888#325888: *1578722 access forbidden by rule, client: 34.158.58.53, server: [redacted], request: "GET /autodiscover.xml/apps/.env HTTP/1.1", host: "[redacted]"
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 20:09:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.158.58.53 (53.58.158.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:09:07.245337 2026] [security2:error] [pid 3114:tid 3114] [client 34.158.58.53:38344] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "astglobaltech.com"] [uri "/.git/config"] [unique_id "arGO4-G7hLbrsbmM0rqNggAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-21 16:20:04
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-20 17:05:12
(1 week ago)
Web App Attack