๐บ๐ธ
TPI-Abuse
2026-09-21 00:34:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 20:34:20.631208 2026] [security2:error] [pid 15190:tid 15214] [client 34.18.37.238:37774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harrisonburg.windowtailors.com"] [uri "/.git/config"] [unique_id "arB7jPZwOhW-Odp13o10BQAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 00:13:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 20:13:13.663078 2026] [security2:error] [pid 7851:tid 7851] [client 34.18.37.238:40966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harrisconcepts.com"] [uri "/.git/config"] [unique_id "arB2mXWQlvsj2zk1Np_q2QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-20 23:00:04
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:29:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:29:28.669300 2026] [security2:error] [pid 32592:tid 32592] [client 34.18.37.238:35658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "haroparke.com"] [uri "/.git/config"] [unique_id "arBeSJTRDymW3wRebCON6AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:03:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:03:53.871516 2026] [security2:error] [pid 31309:tid 31309] [client 34.18.37.238:38432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harmonyexpos.com"] [uri "/.git/config"] [unique_id "arBKObJozdheFL7Nwf-kwgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
neckaralb-admin.de
2026-09-20 20:33:30
(1 day ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-09-20 20:02:23
(1 day ago)
(php_susp_dir) srv101 PHP Suspicious Directory 34.18.37.238 (QA/Qatar/238.37.18.34.bc.googleusercont ...
show more
(php_susp_dir) srv101 PHP Suspicious Directory 34.18.37.238 (QA/Qatar/238.37.18.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-20 19:24:02
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
Site.eu
2026-09-20 19:21:10
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
webanyone
2026-09-20 18:47:52
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-20 18:38:51
(1 day ago)
20 attempts against mh_ha-misbehave-ban on choy
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-20 17:55:04
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 17:23:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:23:39.979164 2026] [security2:error] [pid 20786:tid 20786] [client 34.18.37.238:34604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harintonmechanical.com"] [uri "/.git/config"] [unique_id "arAWm2UTB6Wbv0T0jn-v7QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 16:28:23
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 15:44:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.37.238 (238.37.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 11:44:41.837472 2026] [security2:error] [pid 27960:tid 27960] [client 34.18.37.238:37394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hare.digitalsolutions.help"] [uri "/.git/config"] [unique_id "aq__aXN-Py8eheAcIQJ2BQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack