Anonymous
2026-09-18 07:59:10
(4 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 05:51:12
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 01:51:05.426067 2026] [security2:error] [pid 25133:tid 25133] [client 34.162.6.241:47994] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "c470techarchive.net"] [uri "/.git/config"] [unique_id "aqzRSRJuZY--nscewwBtQAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:15:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:15:24.681249 2026] [security2:error] [pid 23673:tid 23673] [client 34.162.6.241:36284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fxztrader.com"] [uri "/.git/config"] [unique_id "aqtbTNDw8Sknd8Q170w4DwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-09-16 19:24:59
(1 day ago)
HTTP vulnerability scanning
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 18:44:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 14:44:13.871841 2026] [security2:error] [pid 22728:tid 22776] [client 34.162.6.241:53054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "booking.heworeblack.com"] [uri "/.git/config"] [unique_id "aqrjfUwMwVf60TLl_NbWWwAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-09-16 18:41:54
(1 day ago)
Web scanning / probing for vulnerable paths | URL: /crm/.env | Evidence: booking.fortuniviatges.com ...
show more
Web scanning / probing for vulnerable paths | URL: /crm/.env | Evidence: booking.fortuniviatges.com 34.162.6.241 - - [16/Sep/2026:20:40:44 +0200] \"GET /crm/.env HTTP/1.1\" 404 26672 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack
๐ฆ๐บ
A.i.D.A.N.N
2026-09-16 18:40:45
(1 day ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 17:49:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 13:49:07.649203 2026] [security2:error] [pid 26805:tid 26805] [client 34.162.6.241:53030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookguardian.net"] [uri "/.git/config"] [unique_id "aqrWkw5VpjdoyrNJbRAguwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:25:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:25:21.769562 2026] [security2:error] [pid 30221:tid 30221] [client 34.162.6.241:39722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "book-arts.com"] [uri "/.git/config"] [unique_id "aqq04XeUeWJg5drYyWONmQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:58:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:58:31.979986 2026] [security2:error] [pid 13594:tid 13594] [client 34.162.6.241:36796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bonvivantorganics.com"] [uri "/.git/config"] [unique_id "aqqul0W6sZol0D93mErBogAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 14:04:07
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+4 more) | 2026-09-16 14:04 UTC
show less
Hacking
Web App Attack
๐ฎ๐น
VHosting
2026-09-16 13:35:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 13:29:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.6.241 (241.6.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:28:58.527527 2026] [security2:error] [pid 24962:tid 24962] [client 34.162.6.241:37816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bonnesfrequences.com"] [uri "/.git/config"] [unique_id "aqqZmk2y0yzVrtz_ics3OgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 13:25:01
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 13:18:08
(1 day ago)
[livebd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Examp ...
show more
[livebd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.162.6.241 - - [16/Sep/2026:15:17:55 +0200] "GET /.git/config HTTP/1.1" 404 2142 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack