๐บ๐ธ
TPI-Abuse
2026-09-29 18:45:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 14:45:38.120277 2026] [security2:error] [pid 18299:tid 18319] [client 34.26.87.41:49626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "charteredwealthmanager.com"] [uri "/.git/config"] [unique_id "arwHUjpZUcoQceZXg7vJNAAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 18:11:16
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 14:11:10.470857 2026] [security2:error] [pid 19308:tid 19308] [client 34.26.87.41:50526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cortona.ws.montepulciano.org"] [uri "/.git/config"] [unique_id "arv_PjlreiC8vO-g1SlhGwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-29 18:10:37
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 00:34:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:33:57.271526 2026] [security2:error] [pid 28055:tid 28055] [client 34.26.87.41:45084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lesdaniels.com"] [uri "/.git/config"] [unique_id "arsHdXT188z4-HA49uc2JgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-28 23:43:28
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-28 05:04:00
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-28 04:05:00
(2 days ago)
Web vulnerability scanning
Brute-Force
Web Spam
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 03:45:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.26.87.41 (41.87.26.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 23:45:04.204717 2026] [security2:error] [pid 30009:tid 30009] [client 34.26.87.41:38320] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nagareinkpaper.es"] [uri "/.git/config"] [unique_id "arniwDrzqQj5jwi5YZqTHAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-27 15:25:29
(3 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-26 21:50:53
(3 days ago)
[ti-10al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apac ...
show more
[ti-10al] Excessive 404 errors (web scanning): 25 suspicious requests detected by fail2ban jail apache-404. Example: 34.26.87.41 - - [26/Sep/2026:23:50:08 +0200] "GET /.git/config HTTP/1.1" 404 537 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [26/Sep/2026:23:50:09 +0200] "GET /.env HTTP/1.1" 404 537 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [26/Sep/2026:23:50:09 +0200] "GET /.env.local HTTP/1.1" 404 537 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [26/Sep/2026:23:50:09 +0200] "GET /.env.production HTTP/1.1" 404 537 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
AWW-Admin
2026-09-26 08:00:05
(4 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.26.87.41 (US/United States/41.87.26. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.26.87.41 (US/United States/41.87.26.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฉ๐ช
ghostwarriors
2026-09-25 20:50:07
(4 days ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-25 20:45:50
(4 days ago)
34.26.87.41 - - [25/Sep/2026:22:45:44 +0200] "GET / HTTP/1.1" 200 16080 "-" "Mozilla/5.0 (Windows NT ...
show more
34.26.87.41 - - [25/Sep/2026:22:45:44 +0200] "GET / HTTP/1.1" 200 16080 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [25/Sep/2026:22:45:44 +0200] "POST / HTTP/1.1" 200 12085 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [25/Sep/2026:22:45:45 +0200] "POST / HTTP/1.1" 200 12085 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [25/Sep/2026:22:45:45 +0200] "GET /.git/config HTTP/1.1" 403 511 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [25/Sep/2026:22:45:46 +0200] "GET /.env HTTP/1.1" 404 59177 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.26.87.41 - - [25/Sep/2026:22:45:
show less
Web App Attack
Hacking
Anonymous
2026-09-25 16:48:36
(5 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
2026-09-21 22:17:14
(1 week ago)
IP matched detection query many 3xx errors.
Brute-Force