🇺🇸
TPI-Abuse
2026-09-11 08:47:42
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:47:34.892912 2026] [security2:error] [pid 11447:tid 11447] [client 34.169.88.112:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.wiszen.org"] [uri "/.git/config"] [unique_id "aqPAJjYfwWYWZRZUJMe4IAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-11 08:30:03
(3 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 08:02:43
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:02:38.930292 2026] [security2:error] [pid 26684:tid 26684] [client 34.169.88.112:55572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.willyouanswerthecall.com"] [uri "/.git/config"] [unique_id "aqO1nlPKeEToHkUzmFAt7QAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 07:10:55
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 03:10:50.999650 2026] [security2:error] [pid 21359:tid 21359] [client 34.169.88.112:43010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.whodatnation.com"] [uri "/.git/config"] [unique_id "aqOpek5UqR3swjUKx-1GGwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
mondor.ro
2026-09-11 05:04:09
(6 hours ago)
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.169.88.112, Reason: ...
show more
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.169.88.112, Reason:[(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (US/United States/112.88.169.34.bc.googleusercontent.com): 3 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
Port Scan
🇺🇸
TPI-Abuse
2026-09-11 02:18:52
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 22:18:48.332801 2026] [security2:error] [pid 29369:tid 29369] [client 34.169.88.112:33356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.wa211.org"] [uri "/.git/config"] [unique_id "aqNlCJ60HGNv_AC-8fo6dwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
zynex
2026-09-11 01:17:14
(10 hours ago)
URL Probing: /server/.env
Web App Attack
🇫🇷
masterguru
2026-09-11 00:54:37
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
Anonymous
2026-09-11 00:35:02
(11 hours ago)
suspicious request in access.log
Web App Attack
🇧🇷
dominioz
2026-09-11 00:30:11
(11 hours ago)
2026-09-11 00:29:29 GET /.env - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit ...
show more
2026-09-11 00:29:29 GET /.env - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 591
2026-09-11 00:29:29 GET /.env.local - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 603
2026-09-11 00:29:30 GET /.env.production - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 613
2026-09-11 00:29:30 GET /.env.staging - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 607
2026-09-11 00:29:31 GET /.env.development - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 615
2026-09-11 00:29:33 GET /.env.test - - 34.169.88.112 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTM
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 00:22:19
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 20:22:14.766741 2026] [security2:error] [pid 8694:tid 8694] [client 34.169.88.112:44054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clinicadentaldiaz.aticom.es"] [uri "/.git/config"] [unique_id "aqNJtt4ejDJ3XiGhmmpOhwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-10 23:40:01
(12 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 10:42:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 06:42:08.365669 2026] [security2:error] [pid 1994:tid 1994] [client 34.169.88.112:36172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dancingbearprinting.com"] [uri "/.git/config"] [unique_id "aqKJgLgCgIhLwaRwtM2W1gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 08:52:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.169.88.112 (112.88.169.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 04:52:38.546013 2026] [security2:error] [pid 3051:tid 3051] [client 34.169.88.112:47588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "danafrostick.com"] [uri "/.git/config"] [unique_id "aqJv1nf9b6_GxDppm_Qa4wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
EGP Abuse Dept
2026-09-10 07:10:13
(1 day ago)
Scanning for web/db/file exploits on dammersbouw.nl
SQL Injection
Bad Web Bot
Web App Attack