🇺🇸
TPI-Abuse
2026-09-07 07:27:48
(25 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:27:41.124606 2026] [security2:error] [pid 31512:tid 31512] [client 34.18.196.120:43656] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "helpchd.rememberingemily.com"] [uri "/.git/config"] [unique_id "ap5nbV6uLwaLHvrv1skW6wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 06:43:21
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:43:16.708239 2026] [security2:error] [pid 1370392:tid 1370392] [client 34.18.196.120:48980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "healthycaregiving.com"] [uri "/.git/config"] [unique_id "ap5dBPUGdGOS4vFyUKUGgAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-07 06:25:21
(1 hour ago)
Try to access /.git/config
Web App Attack
🇬🇧
consul.to
2026-09-07 04:33:18
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:27:05
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:27:00.885413 2026] [security2:error] [pid 25274:tid 25420] [client 34.18.196.120:47720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "help.reviewweaver.app"] [uri "/.git/config"] [unique_id "ap4vBBlDToZmz6tRC9LDkQAAAhY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 03:15:53
(4 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇬🇧
venus.launch.bz
2026-09-07 01:58:34
(5 hours ago)
(wpscan) WordPress probe detected from 34.18.196.120 (QA/Qatar/120.196.18.34.bc.googleusercontent.co ...
show more
(wpscan) WordPress probe detected from 34.18.196.120 (QA/Qatar/120.196.18.34.bc.googleusercontent.com)
show less
Hacking
🇳🇴
Bots.go.to.hell
2026-09-06 23:55:47
(7 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-06 22:43:14
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:43:10.372073 2026] [security2:error] [pid 2434:tid 2434] [client 34.18.196.120:44366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "help.gmacguffin.com"] [uri "/.git/config"] [unique_id "ap3sftq_WNEQvXStnCEwmwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
creoline GmbH
2026-09-06 20:56:53
(10 hours ago)
[WAF] Multiple suspicious HTTP requests has been blocked
Bad Web Bot
Web App Attack
🇨🇭
backslash
2026-09-06 19:42:05
(12 hours ago)
block ruleset likely probe for CVE-2025-55182 619E65C9C14E5E741C55CC8FD5E5630F031EBB6A
Web App Attack
🇮🇹
VHosting
2026-09-06 17:50:03
(14 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-06 14:30:13
(17 hours ago)
| [Dangerous/Qatar] Aggressive IP 34.18.196.120 (~30 hits). Type: DoS Defender- Web server 400 error ...
show more
| [Dangerous/Qatar] Aggressive IP 34.18.196.120 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
🇺🇸
TPI-Abuse
2026-09-06 14:00:52
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.196.120 (120.196.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 10:00:48.750537 2026] [security2:error] [pid 20319:tid 20319] [client 34.18.196.120:41692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "helloworld.jmnr.net"] [uri "/.git/config"] [unique_id "ap1yEEjBPBbl7LXpzqvVYQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack