๐บ๐ธ
TPI-Abuse
2026-08-31 15:55:16
(3 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:55:12.645260 2026] [security2:error] [pid 31301:tid 31301] [client 34.42.186.158:61914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sailinghonu.com"] [uri "/.git/config"] [unique_id "apWj4LxyUa92EC_FalOwOQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
jcbriar
2026-08-31 15:45:39
(13 minutes ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-31 14:40:22
(1 hour ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 13:56:36
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 09:56:30.071872 2026] [security2:error] [pid 1256:tid 1256] [client 34.42.186.158:15522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nomanszone.org"] [uri "/.git/config"] [unique_id "apWIDs52f5WnyScD3JFzlgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:59:23
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:59:17.184099 2026] [security2:error] [pid 31205:tid 31205] [client 34.42.186.158:21924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seizethisseason.com"] [uri "/.git/config"] [unique_id "apVCZYrLtK9e3C9VKXIt7AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:17:46
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:17:39.210206 2026] [security2:error] [pid 31634:tid 31634] [client 34.42.186.158:49390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "riedmannfamily.com"] [uri "/.git/config"] [unique_id "apU4o2GNzMchD815Bxa4jgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 06:25:02
(9 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 06:12:47
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:12:39.499431 2026] [security2:error] [pid 6716:tid 6723] [client 34.42.186.158:47246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ouye.net"] [uri "/.git/config"] [unique_id "apUbVx806Fll7K-ZZEQfoAAAAMU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-31 06:03:56
(9 hours ago)
cloudlinux2 fail2ban: 2026-08-31 07:58:52,422 fail2ban.filter [1605]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-31 07:58:52,422 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 198.177.120.13 - 2026-08-31 07:58:52cloudlinux2 fail2ban: 2026-08-31 07:59:12,934 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 117.193.227.66 - 2026-08-31 07:59:12cloudlinux2 fail2ban: 2026-08-31 07:59:44,904 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Ban 117.193.227.66cloudlinux2 fail2ban: 2026-08-31 07:59:44,521 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 117.193.227.66 - 2026-08-31 07:59:44cloudlinux2 fail2ban: 2026-08-31 07:59:44,910 fail2ban.filter [1605]: INFO [recidive] Found 117.193.227.66 - 2026-08-31 07:59:44cloudlinux2 fail2ban: 2026-08-31 07:59:43,960 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 139.99.9.21 - 2026-08-31 07:59:43cloudlinux2 fail2ban: 2026-08-31 08:00:00,048 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 159.223.125.147 - 2026-08-31 07:59:59cloudlinux2 fail2ban: 2026-
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 04:58:20
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:58:15.187505 2026] [security2:error] [pid 17334:tid 17334] [client 34.42.186.158:11072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tecnoconce.cl"] [uri "/.git/config"] [unique_id "apUJ59seWCYLkSJR4Hj2-QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 02:31:00
(13 hours ago)
34.42.186.158 - - [31/Aug/2026:04:30:59 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ...
show more
34.42.186.158 - - [31/Aug/2026:04:30:59 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Web App Attack
๐บ๐ธ
mnsf
2026-08-31 02:05:18
(13 hours ago)
Abuse Detected (10)
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-08-31 01:29:39
(14 hours ago)
[MonAug3103:29:32.1432512026][security2:error][pid565555:tid565800][client34.42.186.158:0]ModSecurit ...
show more
[MonAug3103:29:32.1432512026][security2:error][pid565555:tid565800][client34.42.186.158:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"creazione-siti-ticino.ch\"][uri\"/.git/config\"][unique_id\"apTY_LvZRAed4e5JeBtZ4AAAAVU\"]
show less
Hacking
Web App Attack
Anonymous
2026-08-31 01:07:05
(14 hours ago)
[ns65.kdns.gr] httpd-config-scan: sites=www.me-meraki.gr; logs=/var/log/httpd/domains/me-meraki.gr.l ...
show more
[ns65.kdns.gr] httpd-config-scan: sites=www.me-meraki.gr; logs=/var/log/httpd/domains/me-meraki.gr.log; samples=/.git/config
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 01:02:09
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.42.186.158 (158.186.42.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 21:02:05.837159 2026] [security2:error] [pid 16150:tid 16150] [client 34.42.186.158:20284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martintommer.com"] [uri "/.git/config"] [unique_id "apTSjf2GKlR6qp_MhzBkjAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack