🇩🇪
Petros Stefanakis
2026-09-11 15:05:54
(6 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.18.130.227 (QA/Qatar/227.130.18.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.18.130.227 (QA/Qatar/227.130.18.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-11 14:13:00
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 10:12:56.950098 2026] [security2:error] [pid 17275:tid 17275] [client 34.18.130.227:46890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greed.ee"] [uri "/.git/config"] [unique_id "aqQMaGp-4WnYCqaUqLTC2QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-11 13:41:26
(8 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 13:22:42
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 09:22:37.867932 2026] [security2:error] [pid 11310:tid 11310] [client 34.18.130.227:37290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greatwesternfirearms.com"] [uri "/.git/config"] [unique_id "aqQAnRoUnxPKM_qWz1MgUAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
gws-hostmaster
2026-09-11 12:37:38
(9 hours ago)
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;N ...
show more
ModSecurity OWASP CRS (Anomaly Score: 50): JavaScript Prototype Pollution;JSON-Based SQL Injection;Node.js Injection Attack 1/2;PHP Injection Attack: Variable Access Found;Remote Command Execution: Direct Unix Command Execution;Remote Command Execution: Unix Shell Expression Found;Restricted File Access Attempt;SQL Injection Attack: SQL function name detected;URL file extension is restricted by policy;
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 12:10:23
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 08:10:16.528133 2026] [security2:error] [pid 9866:tid 9866] [client 34.18.130.227:38130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greatnorthernstrategies.com"] [uri "/.git/config"] [unique_id "aqPvqJk88e8PLpt7DabAHgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 08:11:07
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:10:59.920373 2026] [security2:error] [pid 12673:tid 12716] [client 34.18.130.227:44830] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grdsys.com"] [uri "/.git/config"] [unique_id "aqO3kyONJjqdyQzU5KdYwwAAAcs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
Dunham Support
2026-09-11 06:43:40
(15 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.18.130.227 (QA/Qatar/227.130.18.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.18.130.227 (QA/Qatar/227.130.18.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-11 06:20:37
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 02:20:31.545187 2026] [security2:error] [pid 25796:tid 25796] [client 34.18.130.227:41112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grayowl.com"] [uri "/.git/config"] [unique_id "aqOdrx5RM1xQnxhBnv4iQQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 05:54:30
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 01:54:25.878513 2026] [security2:error] [pid 15812:tid 15812] [client 34.18.130.227:45148] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grayhost.net"] [uri "/.git/config"] [unique_id "aqOXkcr4UpB3P1wV4zBtzAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 05:35:05
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.130.227 (227.130.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 01:34:55.759084 2026] [security2:error] [pid 31783:tid 31783] [client 34.18.130.227:57750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grayarea.kmp.net"] [uri "/.git/config"] [unique_id "aqOS_6Nt0uwlBSKXi0iObgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
🇨🇭 Hosting
2026-09-11 05:10:05
(16 hours ago)
Automated WAF report: 2000-2500 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
🇩🇪
on-com
2026-09-11 04:37:16
(17 hours ago)
URL scan
Brute-Force
Web App Attack
🇫🇷
Octopuce
2026-09-11 03:30:42
(18 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇳🇱
Site.eu
2026-09-11 02:44:46
(19 hours ago)
Excessive multi-domain requests
Brute-Force