🇳🇱
Site.eu
2026-09-07 00:29:27
(11 minutes ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-07 00:20:49
(19 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.159.129.234 (234.129.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.129.234 (234.129.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 20:20:43.019468 2026] [security2:error] [pid 29583:tid 29583] [client 34.159.129.234:47210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "balivisaservice.com"] [uri "/.git/config"] [unique_id "ap4DW2o9ZGZk4HbCsJ5pcwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Petros Stefanakis
2026-09-07 00:00:56
(39 minutes ago)
(mod_security) mod_security triggered on hostname [redacted] 34.159.129.234 (DE/Germany/234.129.159. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.159.129.234 (DE/Germany/234.129.159.34.bc.googleusercontent.com)
show less
SQL Injection
🇳🇿
Antinson
2026-09-06 22:37:29
(2 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇩🇪
todix
2026-09-06 22:03:48
(2 hours ago)
Web App Attack Exploid from 34.159.129.234
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 21:48:53
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.159.129.234 (234.129.159.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.129.234 (234.129.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 17:48:45.953783 2026] [security2:error] [pid 5753:tid 5753] [client 34.159.129.234:37504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "baldventure.com.tomthomasplumbing.com"] [uri "/.git/config"] [unique_id "ap3fveBX-cbJSUffTn0H4wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇴
Abuse Buster
2026-09-06 21:25:30
(3 hours ago)
34.159.129.234 - - [06/Sep/2026:23:25:28 +0200] "GET /.git/config HTTP/1.1" 404 22 "-" "Mozilla/5.0 ...
show more
34.159.129.234 - - [06/Sep/2026:23:25:28 +0200] "GET /.git/config HTTP/1.1" 404 22 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.129.234 - - [06/Sep/2026:23:25:28 +0200] "GET /.env HTTP/1.1" 404 22 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.129.234 - - [06/Sep/2026:23:25:28 +0200] "GET /.env.local HTTP/1.1" 404 22 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇩🇪
paissangroup
2026-09-06 21:13:33
(3 hours ago)
Multiple WAF Violations
Web App Attack
🇫🇷
Stara
2026-09-06 21:06:57
(3 hours ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
SSH
Web App Attack
🇦🇺
paulshipley.com.au
2026-09-06 21:03:07
(3 hours ago)
[Mon Sep 07 07:03:06.091779 2026] [security2:error] [pid 24638] [client 34.159.129.234:45240] [clien ...
show more
[Mon Sep 07 07:03:06.091779 2026] [security2:error] [pid 24638] [client 34.159.129.234:45240] [client 34.159.129.234] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "balcomberetreat.com.au"] [uri "/"] [unique_id "ap3VCkeQ8CDxaK24r98fkgAAAAM"]
...
show less
Web App Attack
🇧🇷
dominioz
2026-09-06 20:45:57
(3 hours ago)
2026-09-06 20:44:58 GET /.git/config - - 34.159.129.234 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64 ...
show more
2026-09-06 20:44:58 GET /.git/config - - 34.159.129.234 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 474
2026-09-06 20:44:59 GET /.env - - 34.159.129.234 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 467
2026-09-06 20:45:03 GET /.env.bak - - 34.159.129.234 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5180
2026-09-06 20:45:04 GET /.env.old - - 34.159.129.234 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5180
...
show less
Web App Attack
🇳🇱
e.fierstra
2026-09-06 19:16:24
(5 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-06 18:10:38
(6 hours ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-09-06 18:04:06
(6 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-09-06 17:40:03
(7 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack