🇺🇸
TPI-Abuse
2026-09-08 09:42:57
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 05:42:53.152433 2026] [security2:error] [pid 12579:tid 12579] [client 34.17.1.216:53098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.nutandboltguy.com"] [uri "/.git/config"] [unique_id "ap_Yne9NxJ0PIM0T39y4-gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
4server
2026-09-07 16:09:19
(23 hours ago)
[MonSep0718:09:13.2921472026][security2:error][pid353101:tid353117][client34.17.1.216:0]ModSecurity: ...
show more
[MonSep0718:09:13.2921472026][security2:error][pid353101:tid353117][client34.17.1.216:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcontacts.monteco-suisse.ch\"][uri\"/.env.bak\"][unique_id\"ap7hqZlEtgFu0FPVFdndIwAAAAU\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 15:35:53
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 11:35:47.656273 2026] [security2:error] [pid 13309:tid 13309] [client 34.17.1.216:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ndanetworks.com"] [uri "/.git/config"] [unique_id "ap7Z0wGuCQzUTzautVEC4AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-07 06:11:25
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 06:08:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:08:20.768159 2026] [security2:error] [pid 5345:tid 5345] [client 34.17.1.216:53278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.montymilburn.com"] [uri "/.git/config"] [unique_id "ap5U1IMeVCvWeLqNy7CGegAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:33:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:33:04.146910 2026] [security2:error] [pid 1775986:tid 1776072] [client 34.17.1.216:42666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mjkotob.com"] [uri "/.git/config"] [unique_id "ap4wcFAY7FEzOcUqwbby7wAAAZY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 02:18:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 22:18:17.970914 2026] [security2:error] [pid 25650:tid 25677] [client 34.17.1.216:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mindgardens.com"] [uri "/.git/config"] [unique_id "ap4e6SKFyt8ZnOVI8-0fdAAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
rubixstudios
2026-09-07 02:02:02
(1 day ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 01:11:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 21:11:29.422830 2026] [security2:error] [pid 27294:tid 27294] [client 34.17.1.216:60722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.microscopicpablo.com"] [uri "/.git/config"] [unique_id "ap4PQfDDI-xdSy2OJaImIgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 23:08:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 19:08:08.659245 2026] [security2:error] [pid 22988:tid 22988] [client 34.17.1.216:53732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.merlinaerospace.com"] [uri "/.git/config"] [unique_id "ap3yWGEkjQ6qOFIJ1W1DeQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 21:37:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 17:37:52.449631 2026] [security2:error] [pid 9205:tid 9205] [client 34.17.1.216:33072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.medpact.net"] [uri "/.git/config"] [unique_id "ap3dMNzRB1EFbLhDee1LpAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
4server
2026-09-06 17:42:47
(1 day ago)
[SunSep0619:42:44.2336142026][security2:error][pid3196465:tid3196602][client34.17.1.216:0]ModSecurit ...
show more
[SunSep0619:42:44.2336142026][security2:error][pid3196465:tid3196602][client34.17.1.216:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcontacts.martinairsagl.ch\"][uri\"/.env.bak\"][unique_id\"ap2mFNxpTLu_vj6qYESCaQAAAJg\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 17:41:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 13:41:01.764140 2026] [security2:error] [pid 15147:tid 15147] [client 34.17.1.216:54106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.marthasvineyardweddingideas.com"] [uri "/.git/config"] [unique_id "ap2lrfIqGLqYyCowMmy_NAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-06 14:00:05
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 13:59:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.1.216 (216.1.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 09:59:17.570692 2026] [security2:error] [pid 27667:tid 27667] [client 34.17.1.216:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mail-pmg.com"] [uri "/.git/config"] [unique_id "ap1xtRfNHFUIZeGNOxQcNwAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack