π³π±
e.fierstra
2026-09-17 14:17:10
(1 hour ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 08:19:11
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 04:19:08.086169 2026] [security2:error] [pid 5176:tid 5176] [client 34.18.132.10:57636] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hillerhome.com"] [uri "/.git/config"] [unique_id "aquifKOXTILW8gNFvLzvFgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 07:43:31
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 03:43:27.356040 2026] [security2:error] [pid 21320:tid 21320] [client 34.18.132.10:55232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hillconsultants.alhill.com"] [uri "/.git/config"] [unique_id "aquaH5VBdP484C57cpjGbwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 03:22:11
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:22:04.639014 2026] [security2:error] [pid 4979:tid 4979] [client 34.18.132.10:45510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martinvjohnson.com"] [uri "/.git/config"] [unique_id "aqtc3E16qiwiApycMUrkKgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-09-17 03:07:22
(12 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-17 02:09:12
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 22:09:05.708988 2026] [security2:error] [pid 6297:tid 6297] [client 34.18.132.10:57734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martaaizenman.com"] [uri "/.git/config"] [unique_id "aqtLwY5JWYwUWikHeTWFbwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
middelkoopcc
2026-09-16 17:44:01
(21 hours ago)
2026-09-16 19:41:57 GET /.git/config [301] && 2026-09-16 19:41:57 GET /.env [301] && 2026-09-16 19:4 ...
show more
2026-09-16 19:41:57 GET /.git/config [301] && 2026-09-16 19:41:57 GET /.env [301] && 2026-09-16 19:41:58 GET /.env.bak [301] && 239 more within 20 minutes
show less
Web App Attack
π©πͺ
LRob
2026-09-16 16:25:22
(23 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-16 16:25 UTC
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 15:49:00
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:48:54.082459 2026] [security2:error] [pid 22853:tid 22853] [client 34.18.132.10:44770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heavenonearthonline.net"] [uri "/.git/config"] [unique_id "aqq6ZnFcx5teDmyT75-szQAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 15:32:28
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:32:21.422749 2026] [security2:error] [pid 30982:tid 30982] [client 34.18.132.10:59100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heatspecs.steambalancing.com"] [uri "/.git/config"] [unique_id "aqq2hfXiqnpZdWItKhkrkQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 14:52:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:52:11.028158 2026] [security2:error] [pid 21762:tid 21762] [client 34.18.132.10:58368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heathdiesel.com"] [uri "/.git/config"] [unique_id "aqqtG64n8IyZayEZPf06HwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 14:27:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:27:52.760551 2026] [security2:error] [pid 30735:tid 30735] [client 34.18.132.10:47794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heartshapedboy.com"] [uri "/.git/config"] [unique_id "aqqnaPQiX9oey-0g6xH7hAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 13:48:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:48:34.182436 2026] [security2:error] [pid 19406:tid 19417] [client 34.18.132.10:55120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heartfailuredev.howiek.com"] [uri "/.git/config"] [unique_id "aqqeMnFyyJRQrflL08eDEAAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 10:38:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.132.10 (10.132.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:38:08.977615 2026] [security2:error] [pid 2680:tid 2680] [client 34.18.132.10:58260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "happybookermusic.com"] [uri "/.git/config"] [unique_id "aqpxkOAl72uusK9UKIMzuAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
zynex
2026-09-16 10:27:52
(1 day ago)
URL Probing: /.env
Web App Attack