πΊπΈ
TPI-Abuse
2026-09-16 17:29:21
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 13:29:17.268372 2026] [security2:error] [pid 30536:tid 30536] [client 34.32.36.64:37854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vsecuritysolutions.com"] [uri "/.git/config"] [unique_id "aqrR7TZ1nvF9ANd2lHY-GQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 15:53:36
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:53:29.295608 2026] [security2:error] [pid 3521:tid 3521] [client 34.32.36.64:45852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vitaponte.com"] [uri "/.git/config"] [unique_id "aqq7eeFlUkwTWOAANhugcAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 15:36:54
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:36:49.555638 2026] [security2:error] [pid 11938:tid 11938] [client 34.32.36.64:51674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.virtualmediamasters.net"] [uri "/.git/config"] [unique_id "aqq3kWFmMcW9iulFFc38pQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-09-16 15:27:39
(3 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.32.36.64 (DE/Germany/64.36.32.34.bc.googleus ...
show more
(mod_security) mod_security (id:949110) triggered by 34.32.36.64 (DE/Germany/64.36.32.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
2026-09-16 15:22:28
(3 hours ago)
Scenarios: http-sensitive-files
Total requests: 276
Web App Attack
π«π·
Little Iguana
2026-09-16 15:04:26
(3 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
πΊπΈ
TPI-Abuse
2026-09-16 14:29:53
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:29:45.677282 2026] [security2:error] [pid 25893:tid 25893] [client 34.32.36.64:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vertubet.com"] [uri "/.git/config"] [unique_id "aqqn2Vsm8mHg7qHq8g2CAwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Mangelot Hosting
2026-09-16 13:53:03
(5 hours ago)
(modsecurity) srv103 ModSecurity 34.32.36.64 (DE/Germany/64.36.32.34.bc.googleusercontent.com): 30 i ...
show more
(modsecurity) srv103 ModSecurity 34.32.36.64 (DE/Germany/64.36.32.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
π§π·
Halux
2026-09-16 03:49:45
(15 hours ago)
34.32.36.64 Probing protected path or service
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 02:09:07
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:09:00.727971 2026] [security2:error] [pid 20637:tid 20637] [client 34.32.36.64:52432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marijuanajoint.com.beautyradio.com"] [uri "/.git/config"] [unique_id "aqn6PLXKticn50Jgge8yMQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-16 01:58:18
(17 hours ago)
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.32.36.64 - - [16/Sep/2026:03:58:08 +0200] "GET /.git/config HTTP/1.1" 301 454 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 01:19:52
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:19:47.892065 2026] [security2:error] [pid 7052:tid 7052] [client 34.32.36.64:56090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mariettacaseyclub.org"] [uri "/.git/config"] [unique_id "aqnuswopHXHPOhTEhZD8fAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FD-IX
2026-09-16 00:52:16
(18 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-09-16 00:33:35
(18 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 23:13:23
(19 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:949110) triggered by 34.32.36.64 (64.36.32.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 19:13:16.416696 2026] [security2:error] [pid 32127:tid 32127] [client 34.32.36.64:50408] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "maricotippett.com"] [uri "/.git/config"] [unique_id "aqnRDJaC_mkHECWxBFyX-wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack