🇺🇸
TPI-Abuse
2026-09-15 02:20:57
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 22:20:47.673139 2026] [security2:error] [pid 19312:tid 19312] [client 34.162.137.193:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.frogmouthatx.com"] [uri "/.git/config"] [unique_id "aqirf97j0FYTGy22GWdxfAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 00:34:53
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 20:34:48.586030 2026] [security2:error] [pid 15985:tid 15985] [client 34.162.137.193:54220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.formationone.com"] [uri "/.git/config"] [unique_id "aqiSqDctyQ_HyynIHXFACwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 18:33:05
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 14:33:00.580971 2026] [security2:error] [pid 30181:tid 30181] [client 34.162.137.193:45314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.fairfieldfarms.net"] [uri "/.git/config"] [unique_id "aqg93FRyPyVbkGml90jabAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
rellik
2026-09-14 17:39:00
(20 hours ago)
Brute Force Scanning Critical Directories
Hacking
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 17:18:32
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 13:18:24.502956 2026] [security2:error] [pid 2009:tid 2009] [client 34.162.137.193:32854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.exoticcarwrap.com"] [uri "/.git/config"] [unique_id "aqgsYGpqSRBANNb2JJ5D_wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇷🇴
clauss
2026-09-14 13:22:58
(1 day ago)
34.162.137.193 - - [14/Sep/2026:16:22:57 +0300] "GET /.git/config HTTP/1.1" 401 36 "-" "Mozilla/5.0 ...
show more
34.162.137.193 - - [14/Sep/2026:16:22:57 +0300] "GET /.git/config HTTP/1.1" 401 36 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.162.137.193 - - [14/Sep/2026:16:22:57 +0300] "GET /.env.local HTTP/1.1" 401 36 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇿🇦
conure.sh
2026-09-14 06:34:49
(1 day ago)
csagent: score 20.4: secrets grab x2, 404 noise floor x2; 1 domain(s) in 3s
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 06:27:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 02:27:47.432583 2026] [security2:error] [pid 3096:tid 3096] [client 34.162.137.193:44018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.davidsonmanagement.net"] [uri "/.git/config"] [unique_id "aqeT4wWHeNrOhD7Zl9ivVwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
4server
2026-09-14 00:35:58
(1 day ago)
[MonSep1402:35:53.6611642026][security2:error][pid1075287:tid1075357][client34.162.137.193:0]ModSecu ...
show more
[MonSep1402:35:53.6611642026][security2:error][pid1075287:tid1075357][client34.162.137.193:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpanel.creazione-siti-web-ticino.ch\"][uri\"/.env.bak\"][unique_id\"aqdBaYIUAjCbRTO7PtA6KAAAAUk\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 22:11:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 18:11:50.571674 2026] [security2:error] [pid 8726:tid 8832] [client 34.162.137.193:37418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cookmanufacturinggroup.com"] [uri "/.git/config"] [unique_id "aqcfpgxCy2zeCLN0afnkpwAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 19:55:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 15:55:50.712405 2026] [security2:error] [pid 27769:tid 27857] [client 34.162.137.193:39250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.colinkyffinmusic.com"] [uri "/.git/config"] [unique_id "aqb_xj0Tk6U8CMrKYZVdGgAAAhg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 18:08:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 14:08:19.446970 2026] [security2:error] [pid 6527:tid 6527] [client 34.162.137.193:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cloudex.click"] [uri "/.git/config"] [unique_id "aqbmkwCgmL7yVy-MydRP_AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-13 16:14:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.137.193 (193.137.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 12:13:53.433049 2026] [security2:error] [pid 11455:tid 11455] [client 34.162.137.193:56584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cityviewsportsbar.com"] [uri "/.git/config"] [unique_id "aqbLwR2Rh_Ijj8gWuPBXhwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-13 15:30:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇦🇺
rubixstudios
2026-09-13 15:14:02
(1 day ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack