🇨🇭
🇨🇭 Hosting
2026-09-08 05:10:28
(1 day ago)
Automated WAF report: 200-300 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 13:18:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 09:18:49.694367 2026] [security2:error] [pid 23896:tid 23896] [client 34.18.231.99:37546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ice.premaindustrial.com"] [uri "/.git/config"] [unique_id "ap65uQaZ7XBKED-lTSrDjAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 10:29:59
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 06:29:52.590104 2026] [security2:error] [pid 19712:tid 19720] [client 34.18.231.99:34366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icbc-canada.com"] [uri "/.git/config"] [unique_id "ap6SIOX1ieuV86ogWiVkQwAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 09:45:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 05:45:23.288474 2026] [security2:error] [pid 407:tid 407] [client 34.18.231.99:50242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "i-spose.com"] [uri "/.git/config"] [unique_id "ap6HsxYO5IomlM9jZqsJCwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 08:54:28
(2 days ago)
Web probing (241 hits in 24h) on i-mv.nl: sensitive-path scans and/or 404 bursts. Reported by CRMON.
Web App Attack
🇮🇹
CoreTech srl
2026-09-07 08:49:01
(2 days ago)
cloudlinux2 fail2ban: 2026-09-07 10:43:48,590 fail2ban.filter [1794]: INFO [plesk-proftpd ...
show more
cloudlinux2 fail2ban: 2026-09-07 10:43:48,590 fail2ban.filter [1794]: INFO [plesk-proftpd] Found 185.204.109.142 - 2026-09-07 10:43:48cloudlinux2 fail2ban: 2026-09-07 10:44:12,468 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 34.18.231.99 - 2026-09-07 10:44:12cloudlinux2 fail2ban: 2026-09-07 10:44:12,742 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 34.18.231.99 - 2026-09-07 10:44:12cloudlinux2 fail2ban: 2026-09-07 10:44:12,646 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 34.18.231.99 - 2026-09-07 10:44:12cloudlinux2 fail2ban: 2026-09-07 10:44:12,840 fail2ban.filter [1794]: INFO [recidive] Found 34.18.231.99 - 2026-09-07 10:44:12cloudlinux2 fail2ban: 2026-09-07 10:44:12,544 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 34.18.231.99 - 2026-09-07 10:44:12cloudlinux2 fail2ban: 2026-09-07 10:44:12,850 fail2ban.filter [1794]: INFO [plesk-modsecurity] Found 34.18.231.99 - 2026-09-07 10:44:12cloudlinux2
show less
FTP Brute-Force
🇺🇸
ruusvuu
2026-09-07 08:43:42
(2 days ago)
Automated abuse report: 25 attack/probe requests from Google LLC / QA.
Targeted paths: /phpinfo, /gc ...
show more
Automated abuse report: 25 attack/probe requests from Google LLC / QA.
Targeted paths: /phpinfo, /gcp-credentials.json, /credentials.json, /google-credentials.json, /.config/gcloud/application_default_credentials.json.
Sample log lines:
[icantell] 34.18.231.99 - - [07/Sep/2026:08:43:40 +0000] "GET /.config/gcloud/application_default_credentials.json HTTP/1.1" 404 2651 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36…
[icantell] 34.18.231.99 - - [07/Sep/2026:08:43:40 +0000] "GET /application_default_credentials.json HTTP/1.1" 404 2651 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like G…
[icantell] 34.18.231.99 - - [07/Sep/2026:08:43:40 +0000] "GET /key.json HTTP/1.1" 404 2651 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safar…
Detected by an automated web-server log monitor.
show less
Web App Attack
🇮🇩
Burayot
2026-09-07 07:59:02
(2 days ago)
LF_APACHE_403: 34.18.231.99 (QA/Qatar/99.231.18.34.bc.googleusercontent.com), more than 10 Apache 40 ...
show more
LF_APACHE_403: 34.18.231.99 (QA/Qatar/99.231.18.34.bc.googleusercontent.com), more than 10 Apache 403 hits in the last 3600 secs
show less
Web App Attack
Anonymous
2026-09-07 07:50:05
(2 days ago)
| [Dangerous/Qatar] Aggressive IP 34.18.231.99 (~30 hits). Type: DoS Defender- Web server 400 error ...
show more
| [Dangerous/Qatar] Aggressive IP 34.18.231.99 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
🇺🇸
kosada.com
2026-09-07 07:38:33
(2 days ago)
Repeated requests for suspicious nonexistent URLs, for example: /.env.staging (HTTP/1.1 port 443, us ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /.env.staging (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:35:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:35:38.552253 2026] [security2:error] [pid 28020:tid 28020] [client 34.18.231.99:55452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icafe.bz"] [uri "/.git/config"] [unique_id "ap5pSkJa2ATD8A3rhc2_FgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇩
David Koswari
2026-09-07 07:10:00
(2 days ago)
REQ_BLOCKED_SECURITY
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
🇺🇸
TPI-Abuse
2026-09-07 06:47:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.231.99 (99.231.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:47:16.536481 2026] [security2:error] [pid 1375485:tid 1375485] [client 34.18.231.99:60526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ic1.biz"] [uri "/.git/config"] [unique_id "ap5d9FuVzQKSCaQkS2T-0gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-09-07 06:05:17
(2 days ago)
Too many 404 requests [BY]
Web App Attack
🇳🇱
Site.eu
2026-09-07 05:43:04
(2 days ago)
Excessive multi-domain requests
Brute-Force