๐บ๐ธ
TPI-Abuse
2026-09-28 04:00:17
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 00:00:13.416289 2026] [security2:error] [pid 2172:tid 2172] [client 34.159.73.170:59366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heatherweathers.com"] [uri "/.git/config"] [unique_id "arnmTa1jHtyYTFcJaEy3BgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 02:49:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 22:49:45.246097 2026] [security2:error] [pid 19833:tid 19833] [client 34.159.73.170:51386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heathdiesel.com"] [uri "/.git/config"] [unique_id "arnVyclLMATMEIQqVupJSAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-27 03:50:08
(1 week ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-27 03:43:16
(1 week ago)
34.159.73.170 - - [27/Sep/2026:05:43:14 +0200] "GET /api/dev/.env HTTP/1.1" 404 1267 "-" "Mozilla/5. ...
show more
34.159.73.170 - - [27/Sep/2026:05:43:14 +0200] "GET /api/dev/.env HTTP/1.1" 404 1267 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.73.170 - - [27/Sep/2026:05:43:14 +0200] "GET /api/staging/.env HTTP/1.1" 404 1267 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.73.170 - - [27/Sep/2026:05:43:14 +0200] "GET /vendor/.env HTTP/1.1" 404 1267 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.73.170 - - [27/Sep/2026:05:43:14 +0200] "GET /lib/.env HTTP/1.1" 404 1267 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.159.73.170 - - [27/Sep/2026:05:43:14 +0200] "GET /resources/.env HTTP/1.1" 404 1267 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML
show less
Web App Attack
Hacking
๐ฆ๐บ
screwlooseit.com.au
2026-09-27 03:28:32
(1 week ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/170.73.159.34.bc.googleuserconten ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/170.73.159.34.bc.googleusercontent.com
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 11:15:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 07:15:33.349508 2026] [security2:error] [pid 23747:tid 23747] [client 34.159.73.170:49592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holisticbuildingexperience.com"] [uri "/.git/config"] [unique_id "arepVW-bzOdmSKAHl-0RZAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
rakkor
2026-09-26 08:59:56
(1 week ago)
2026-09-26T09:59:56+01:00 NAS [Sat Sep 26 09:59:56.167728 2026] [proxy_fcgi:error] [pid 24419:tid 24 ...
show more
2026-09-26T09:59:56+01:00 NAS [Sat Sep 26 09:59:56.167728 2026] [proxy_fcgi:error] [pid 24419:tid 24467] [client 34.159.73.170:46658] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Hacking
๐ณ๐ฑ
Mangelot Hosting
2026-09-25 20:18:41
(1 week ago)
(modsecurity) srv103 ModSecurity 34.159.73.170 (DE/Germany/170.73.159.34.bc.googleusercontent.com): ...
show more
(modsecurity) srv103 ModSecurity 34.159.73.170 (DE/Germany/170.73.159.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ช๐ธ
robotstxt
2026-09-25 06:43:29
(1 week ago)
34.159.73.170 - - [25/Sep/2026:06:43:20 +0000] "POST / HTTP/1.1" 403 16509 "-" "Mozilla/5.0 (Macinto ...
show more
34.159.73.170 - - [25/Sep/2026:06:43:20 +0000] "POST / HTTP/1.1" 403 16509 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.159.73.170"
34.159.73.170 - - [25/Sep/2026:06:43:20 +0000] "POST / HTTP/1.1" 403 16509 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.159.73.170"
34.159.73.170 - - [25/Sep/2026:06:43:20 +0000] "GET /.git/config HTTP/1.1" 403 12492 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.159.73.170"
34.159.73.170 - - [25/Sep/2026:06:43:21 +0000] "GET /.env HTTP/1.1" 403 12513 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="34.159.73.170"
34.159.73.170 - - [25/Sep/2026:06:43:21 +0000] "GET /.env.local HTTP/1.1" 403 12490 "-" "Mo
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-25 03:59:50
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-25 02:04:00
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 17:49:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.159.73.170 (170.73.159.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 13:49:23.432131 2026] [security2:error] [pid 9254:tid 9342] [client 34.159.73.170:37184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.certifiedfinancialanalyst.org"] [uri "/.git/config"] [unique_id "arVio0FErGPqtwZvtDM6YgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-09-24 13:04:37
(2 weeks ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.159.73.170 (DE/Germany/170.73.159.34.b ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.159.73.170 (DE/Germany/170.73.159.34.bc.googleusercontent.com)
show less
Hacking
๐ฉ๐ช
FeG Deutschland
2026-09-24 04:08:55
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
Anonymous
2026-09-21 23:47:54
(2 weeks ago)
Web application attack detected.
Web App Attack