๐บ๐ฆ
URAN Publishing Service
2026-09-19 12:25:49
(5 hours ago)
[19/Sep/2026:15:25:48 +0300] -- 34.162.128.182 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[19/Sep/2026:15:25:48 +0300] -- 34.162.128.182 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
marten_o
2026-09-19 11:24:19
(6 hours ago)
34.162.128.182 - - [19/Sep/2026:13:24:18 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 404 236 "-" "Mozilla ...
show more
34.162.128.182 - - [19/Sep/2026:13:24:18 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 404 236 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 308 458
...
show less
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-17 06:00:05
(2 days ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
Anonymous
2026-09-17 03:31:00
(2 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-09-17 03:28:07
(2 days ago)
Bad behaviour
Web Spam
Anonymous
2026-09-17 03:07:08
(2 days ago)
2026/09/17 05:07:07 [error] 2433725#2433725: *20461 access forbidden by rule, client: 34.162.128.182 ...
show more
2026/09/17 05:07:07 [error] 2433725#2433725: *20461 access forbidden by rule, client: 34.162.128.182, server: freeflight.org.za, request: "GET /.git/config HTTP/1.1", host: "freeflight.org.za"
2026/09/17 05:07:08 [error] 2433725#2433725: *20461 access forbidden by rule, client: 34.162.128.182, server: freeflight.org.za, request: "GET /.env HTTP/1.1", host: "freeflight.org.za"
2026/09/17 05:07:08 [error] 2433725#2433725: *20461 access forbidden by rule, client: 34.162.128.182, server: freeflight.org.za, request: "GET /.env.local HTTP/1.1", host: "freeflight.org.za"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 14:33:33
(3 days ago)
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.162.128.182 - - \[16/Sep/2026:16:33:22 +0200\] "GET /.git/config HTTP/1.1" 301 667 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฏ๐ต
beon
2026-09-16 14:21:47
(3 days ago)
[DateTime=>2026-09-16T14:21:47Z to 2026-09-16T14:22:54Z (UTC)] , [HoneyPot_Hits=>217 times] , [Honey ...
show more
[DateTime=>2026-09-16T14:21:47Z to 2026-09-16T14:22:54Z (UTC)] , [HoneyPot_Hits=>217 times] , [HoneyPots=>/.git/config, /.env, /.env.local, /.env.production, /.env.staging, /.env.development and others] , [404targets=>/i.php, /pi.php, /pinfo.php, /phpinfo, /test/phpinfo.php, /dev/phpinfo.php and others] , [total_Hits=>271 times] , [hit_per_second=>4.04] , [Keyword=>WordPress, Joomla, Laravel]
show less
Bad Web Bot
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 13:24:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:24:56.263642 2026] [security2:error] [pid 5070:tid 5070] [client 34.162.128.182:40826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brucerohrphotography.com"] [uri "/.git/config"] [unique_id "aqqYqCheolXTty8q4oO0nAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
bokumin.org
2026-09-16 12:11:28
(3 days ago)
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/.git/config"] [id "9491 ...
show more
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/.git/config"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 11:56:39
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:56:34.412788 2026] [security2:error] [pid 10396:tid 10396] [client 34.162.128.182:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brt.365soft.top"] [uri "/.git/config"] [unique_id "aqqD8gSuomQvl9P-G90OHQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 11:05:02
(3 days ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 06:33:11
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 02:33:05.007795 2026] [security2:error] [pid 9334:tid 9334] [client 34.162.128.182:38398] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brownbarn.com"] [uri "/.git/config"] [unique_id "aqo4IVdSyKEYxBFtuxSSqgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 05:41:22
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.128.182 (182.128.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 01:41:20.034087 2026] [security2:error] [pid 1641:tid 1662] [client 34.162.128.182:56292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "browbrew.com"] [uri "/.git/config"] [unique_id "aqosACcqViaUWS_-9-kGxQAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-16 05:24:42
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack