๐บ๐ธ
etu brutus
2026-09-16 01:36:15
(1 week ago)
34.159.126.36 has been banned for [WebApp Attack]
...
Hacking
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 01:05:25
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
Gwyneth Llewelyn
2026-09-16 00:55:39
(1 week ago)
2026/09/16 01:55:36 [error] 2229833#2229833: *1198349 access forbidden by rule, client: 34.159.126.3 ...
show more
2026/09/16 01:55:36 [error] 2229833#2229833: *1198349 access forbidden by rule, client: 34.159.126.36, server: centroestudostibetanos.org, request: "GET /.env HTTP/2.0", host: "sebentanalanda.centroestudostibetanos.org"
34.159.126.36 - - [16/Sep/2026:01:55:36 +0100] "GET /.env HTTP/2.0" 403 1045 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
2026/09/16 01:55:37 [error] 2229833#2229833: *1198349 access forbidden by rule, client: 34.159.126.36, server: centroestudostibetanos.org, request: "GET /app/.env HTTP/2.0", host: "sebentanalanda.centroestudostibetanos.org"
show less
Brute-Force
Web App Attack
๐ฉ๐ฐ
HostingGroup
2026-09-16 00:21:53
(1 week ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 13. First blocked: 2026-09-16.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:06:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.159.126.36 (36.126.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.126.36 (36.126.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:06:25.499594 2026] [security2:error] [pid 10745:tid 10745] [client 34.159.126.36:34784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "patandmat.com"] [uri "/.git/config"] [unique_id "aqmJIdLlRP2c8wUAqp_Y6AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-15 17:50:55
(1 week ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 11:34:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.159.126.36 (36.126.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.126.36 (36.126.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 07:34:08.762485 2026] [security2:error] [pid 21958:tid 21958] [client 34.159.126.36:56018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pastorjohndunning.com"] [uri "/.git/config"] [unique_id "aqktMLldaE8z4Cr1t8rx0AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 09:58:50
(1 week ago)
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linu ...
show more
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "GET /.git/config HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "GET /.env HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.126.36 - - [15/Sep/2026:11:58:48 +0200] "GET /.env.local HTTP/1.1" 403 183
...
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 07:00:06
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack