๐บ๐ธ
TPI-Abuse
2026-09-29 07:13:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 03:13:31.410337 2026] [security2:error] [pid 4217:tid 4217] [client 34.34.132.66:38808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.avaliantlife.com"] [uri "/.git/config"] [unique_id "artlG1lHEsLMjBb2Jv-ALQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 06:46:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 02:46:22.033879 2026] [security2:error] [pid 6914:tid 6914] [client 34.34.132.66:36374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.robtown.com"] [uri "/.git/config"] [unique_id "aroNPg0SwvaxDO9fySffQQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-27 03:33:26
(1 week ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 2s
Web App Attack
๐ซ๐ท
masterguru
2026-09-26 13:24:58
(1 week ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ฉ๐ช
4server
2026-09-26 09:10:08
(1 week ago)
[SatSep2611:10:04.4063172026][security2:error][pid2072848:tid2072941][client34.34.132.66:0]ModSecuri ...
show more
[SatSep2611:10:04.4063172026][security2:error][pid2072848:tid2072941][client34.34.132.66:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"cpcontacts.aaaa6877.org\"][uri\"/.env.bak\"][unique_id\"areL7NrIc3ER-g4lglKjcgAAAMQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 21:04:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:04:25.733137 2026] [security2:error] [pid 21221:tid 21221] [client 34.34.132.66:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.c2cservices.com"] [uri "/.env"] [unique_id "arbh2SnQBi_uMdfPYpJH1wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-09-23 11:44:32
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 34.34.132.66 (BE/Belgium/66.132.34.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.34.132.66 (BE/Belgium/66.132.34.34.bc.googleusercontent.com)
show less
SQL Injection
Anonymous
2026-09-22 09:58:52
(2 weeks ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-22 05:29:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 01:29:33.922637 2026] [security2:error] [pid 27745:tid 27745] [client 34.34.132.66:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.pulleasy.com"] [uri "/.git/config"] [unique_id "arISPbZAwvHcsPX99H1RxgAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-22 01:14:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 21:14:17.592212 2026] [security2:error] [pid 23168:tid 23168] [client 34.34.132.66:42716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.progressivefileshare.org"] [uri "/.git/config"] [unique_id "arHWaXbqR0yd0geukC0S2AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 23:40:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:40:44.054334 2026] [security2:error] [pid 6972:tid 7119] [client 34.34.132.66:33326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.priyom.us"] [uri "/.git/config"] [unique_id "arHAfMS2bjhzdx6Bg7szAgAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 23:10:12
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:10:04.793743 2026] [security2:error] [pid 14152:tid 14152] [client 34.34.132.66:41392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.asiancommoditiescorporation.com"] [uri "/.git/config"] [unique_id "arG5TGwcvvnDQQy14KN2vwAAAEI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-21 13:50:05
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Linuxmalwarehuntingnl
2024-07-03 07:02:36
(2 years ago)
Unauthorized connection attempt
Brute-Force
๐บ๐ธ
TPI-Abuse
2024-06-05 00:18:51
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.34.132.66 (66.132.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 04 20:18:46.089589 2024] [security2:error] [pid 19585] [client 34.34.132.66:50126] [client 34.34.132.66] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||gubbio.name|F|2"] [data ".booking.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "gubbio.name"] [uri "/www.booking.com"] [unique_id "Zl-u5jka1LAhjB7wYJw2RAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack