๐บ๐ธ
TPI-Abuse
2026-09-16 14:11:12
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:11:05.479494 2026] [security2:error] [pid 9759:tid 9759] [client 34.18.62.25:36970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ingberinteriors.com"] [uri "/.git/config"] [unique_id "aqqjebIP74znwJ8n6PnSJAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 13:34:04
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:33:58.912883 2026] [security2:error] [pid 13008:tid 13008] [client 34.18.62.25:34052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "infrared-heaters.us"] [uri "/.git/config"] [unique_id "aqqaxiVxHc9VY3CrDmr98AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
XICTRON
2026-09-16 12:10:07
(14 hours ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:00:59
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:00:52.219426 2026] [security2:error] [pid 27565:tid 27614] [client 34.18.62.25:43496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indigowampum.com"] [uri "/.git/config"] [unique_id "aqqE9Nlm8WST2oTU5VjhBwAAANE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 11:31:40
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:31:33.273180 2026] [security2:error] [pid 6070:tid 6094] [client 34.18.62.25:39892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indigocapital.es"] [uri "/.git/config"] [unique_id "aqp-FUbnZbJcE5zYwS3XegAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-09-16 11:08:26
(15 hours ago)
[Wed Sep 16 21:08:25.177390 2026] [security2:error] [pid 363131] [client 34.18.62.25:44220] [client ...
show more
[Wed Sep 16 21:08:25.177390 2026] [security2:error] [pid 363131] [client 34.18.62.25:44220] [client 34.18.62.25] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "indigi-print-merch.com.au"] [uri "/"] [unique_id "aqp4qSxveMVorRvqsE4CiQAAAAw"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 10:30:03
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 06:29:54.942482 2026] [security2:error] [pid 4833:tid 4833] [client 34.18.62.25:52218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indieheaven.io"] [uri "/.git/config"] [unique_id "aqpvop1ox_n9HZ6dOby_BQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
HostingGroup
2026-09-16 10:06:53
(16 hours ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 28. First blocked: 2026-09-16.
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 09:16:17
(17 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 06:19:35
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 02:19:30.696771 2026] [security2:error] [pid 835:tid 835] [client 34.18.62.25:38114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indiahouseportland.com"] [uri "/.git/config"] [unique_id "aqo08hHZev8fHhH4Bc3oCgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 05:42:17
(20 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-16 03:17:59
(23 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: QA, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: QA, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 03:04:26
(23 hours ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.18.62.25 - - [16/Sep/2026:05:04:05 +0200] "GET /.git/config HTTP/1.1" 301 618 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 02:26:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.62.25 (25.62.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:26:00.327029 2026] [security2:error] [pid 17395:tid 17395] [client 34.18.62.25:33452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "independentmusicconference.com"] [uri "/.git/config"] [unique_id "aqn-OCwnY7ES-FllXbPSsAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 01:42:40
(1 day ago)
Web application attack detected.
Web App Attack