πΏπ¦
conure.sh
2026-10-05 12:05:26
(1 day ago)
csagent: score 20.4: 404 noise floor x2, secrets grab x2; 1 domain(s) in 6s
Web App Attack
πΏπ¦
conure.sh
2026-10-05 00:56:32
(2 days ago)
csagent: score 20.4: secrets grab x2, 404 noise floor x2; 1 domain(s) in 6s
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-05 00:30:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 20:30:07.773106 2026] [security2:error] [pid 408:tid 408] [client 34.186.136.209:58530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jdhunterlaw.com"] [uri "/.git/config"] [unique_id "asLvj6HhU92C9XlA-d4iBQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-10-05 00:25:07
(2 days ago)
8.605 requests with url.path *.env
1.425 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
Anonymous
2026-10-05 00:17:09
(2 days ago)
Web application attack detected.
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 23:42:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 19:42:24.526964 2026] [security2:error] [pid 11555:tid 11555] [client 34.186.136.209:53122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jdeloa.com"] [uri "/.git/config"] [unique_id "asLkYJ6I3lLQHFTF4psurwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-10-04 23:30:14
(2 days ago)
Excessive 404/403 errors
Brute-Force
π³π±
SchorelWeb
2026-10-04 21:39:17
(2 days ago)
Cluster member (Omitted) (FR/France/-) said, TEMPDENY 34.186.136.209, Reason:[(Suspicious403) Suspic ...
show more
Cluster member (Omitted) (FR/France/-) said, TEMPDENY 34.186.136.209, Reason:[(Suspicious403) Suspicious activity detected 34.186.136.209 (US/United States/209.136.186.34.bc.googleusercontent.com): 2 in the last 3600 secs]
show less
Brute-Force
SSH
π¬π§
gigatech
2026-10-04 21:05:03
(2 days ago)
Webserver Probing
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 20:59:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:59:48.713280 2026] [security2:error] [pid 558:tid 630] [client 34.186.136.209:48806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jd-mason.com"] [uri "/.git/config"] [unique_id "asK-RFyrl25ziyzGYxvj7QAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 18:33:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 14:33:18.499013 2026] [security2:error] [pid 19024:tid 19024] [client 34.186.136.209:43790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jcrluthier.com"] [uri "/.git/config"] [unique_id "asKb7sPgBdkM4gPYLooDWAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
screwlooseit.com.au
2026-10-04 18:05:08
(2 days ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/209.136.186.34.bc.googleuserconte ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/209.136.186.34.bc.googleusercontent.com
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 18:03:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 14:03:13.408840 2026] [security2:error] [pid 28716:tid 28716] [client 34.186.136.209:52190] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jcpenterprise.com"] [uri "/.git/config"] [unique_id "asKU4YuaDsfKr1WARgOUXAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 08:47:20
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.136.209 (209.136.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 04:47:15.380280 2026] [security2:error] [pid 15118:tid 15118] [client 34.186.136.209:52958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nilestree.com"] [uri "/.git/config"] [unique_id "arDvE5tRu7CmAe68HFGBeAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
Niko's Stuff
2026-09-21 08:34:41
(2 weeks ago)
Triggered crowdsecurity/http-sensitive-files. More information at: https://app.crowdsec.net/cti/34.1 ...
show more
Triggered crowdsecurity/http-sensitive-files. More information at: https://app.crowdsec.net/cti/34.186.136.209
show less
Web App Attack
Hacking