🇲🇾
Rizzy
2026-09-04 07:52:27
(1 hour ago)
Multiple WAF Violations
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 06:01:28
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:01:22.109990 2026] [security2:error] [pid 24720:tid 24720] [client 34.185.72.99:57366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.gapanda.com"] [uri "/.git/config"] [unique_id "appesrdx1MN7EgNKir54ZQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:18:41
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:18:34.145190 2026] [security2:error] [pid 29849:tid 29885] [client 34.185.72.99:46694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rawhabitat.com"] [uri "/public/.git/config"] [unique_id "appUqoQ8uQopv1vk3RLf_wAAAYo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:34:51
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:34:45.060583 2026] [security2:error] [pid 15002:tid 15002] [client 34.185.72.99:49998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bitcoincasting.com"] [uri "/htdocs/.git/config"] [unique_id "appKZZ_PltLXGpf4H0v0MAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:14:43
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:14:38.506771 2026] [security2:error] [pid 12966:tid 12966] [client 34.185.72.99:41734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wisdomwfm.com"] [uri "/html/.git/config"] [unique_id "appFrqLajpar7A8us07GNQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-03 23:59:52
(9 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.185.72.99 (US/United States/99.72. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.185.72.99 (US/United States/99.72.185.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
🇫🇷
dynamix
2026-09-03 23:14:04
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 18:38:37
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:38:31.608378 2026] [security2:error] [pid 16389:tid 16389] [client 34.185.72.99:32998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mentalmolecule.org"] [uri "/api/.git/config"] [unique_id "apm-p93sTQ8gblMsjqc-bwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 17:53:12
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 13:53:06.646907 2026] [security2:error] [pid 17770:tid 17770] [client 34.185.72.99:56502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arnoldwell.com"] [uri "/app/.git/config"] [unique_id "apm0Ar_jEWxpnUZZ4N_TuQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-03 17:52:48
(15 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 16:38:28
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 12:38:22.689522 2026] [security2:error] [pid 993:tid 993] [client 34.185.72.99:59918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.brianwhitty.com"] [uri "/app/.git/config"] [unique_id "apmifruOJxj3b6QqYPQQiQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
interbiznw.com
2026-09-03 16:17:43
(17 hours ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
🇺🇸
mnsf
2026-09-03 16:05:53
(17 hours ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
🇩🇪
23p02732
2026-09-03 13:34:45
(19 hours ago)
Automated web scanning and malicious probing
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 12:15:38
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.72.99 (99.72.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:15:34.615956 2026] [security2:error] [pid 13243:tid 13243] [client 34.185.72.99:36070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cornerstonecharitablescholarshiptrust.org"] [uri "/api/.git/config"] [unique_id "aplk5pLgQppU9oe7jjcYPAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack