๐บ๐ธ
TPI-Abuse
2026-09-20 22:41:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:41:39.765456 2026] [security2:error] [pid 11887:tid 11887] [client 34.50.57.250:42728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pendergrassfamily.com"] [uri "/.git/config"] [unique_id "arBhI4PB26z1ZtGa_pKfJwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 21:56:59
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-20 20:33:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 16:33:10.318542 2026] [security2:error] [pid 3088:tid 3088] [client 34.50.57.250:40026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pembrokefinance.com"] [uri "/.git/config"] [unique_id "arBDBr4Y3bVWKBkNJXNGhwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-20 20:18:33
(2 days ago)
csagent: score 20.4: secrets grab x2, 404 noise floor x2; 1 domain(s) in 2s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 19:33:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 15:33:07.385569 2026] [security2:error] [pid 8915:tid 8946] [client 34.50.57.250:45568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peluqueriabuhos.com"] [uri "/.git/config"] [unique_id "arA08z0Pn0c29pFcBP_eBwAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 19:03:22
(2 days ago)
Web App Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 18:17:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 14:17:20.223288 2026] [security2:error] [pid 5625:tid 5625] [client 34.50.57.250:40512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pelletisimo.com.suffolksystems.com"] [uri "/.git/config"] [unique_id "arAjMCVLL-db8J1Q-noA1QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-20 18:10:02
(2 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 16:40:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 12:40:30.277763 2026] [security2:error] [pid 4134:tid 4134] [client 34.50.57.250:45666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pelicancovecondo.com"] [uri "/.git/config"] [unique_id "arAMftFNE7_0Q9Up100CgwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-20 15:40:02
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
Starburst SysOp Team
2026-09-20 14:45:24
(2 days ago)
(mod_security-custom) mod_security (id:210492) triggered by 34.50.57.250 (KR/South Korea/Seoul/Yongs ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 34.50.57.250 (KR/South Korea/Seoul/Yongsan-dong/250.57.50.34.bc.googleusercontent.com/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 3600 secs (0-srv1)
show less
Hacking
Anonymous
2026-09-20 14:33:53
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ฎ
NoaQT
2026-09-20 14:33:23
(2 days ago)
2026-09-20T14:33:22.168889+00:00 ingress-1 haproxy[16887]: 34.50.57.250:48318 [20/Sep/2026:14:33:22. ...
show more
2026-09-20T14:33:22.168889+00:00 ingress-1 haproxy[16887]: 34.50.57.250:48318 [20/Sep/2026:14:33:22.168] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 53/53/0/0/0 0/0 "GET /.env.prod HTTP/1.1"
2026-09-20T14:33:22.470011+00:00 ingress-1 haproxy[16887]: 34.50.57.250:48318 [20/Sep/2026:14:33:22.469] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 53/53/0/0/0 0/0 "GET /.env.stage HTTP/1.1"
2026-09-20T14:33:22.771080+00:00 ingress-1 haproxy[16887]: 34.50.57.250:48318 [20/Sep/2026:14:33:22.770] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 53/53/0/0/0 0/0 "GET /.env.ci HTTP/1.1"
2026-09-20T14:33:23.072100+00:00 ingress-1 haproxy[16887]: 34.50.57.250:48318 [20/Sep/2026:14:33:23.071] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 53/53/0/0/0 0/0 "GET /.env.docker HTTP/1.1"
2026-09-20T14:33:23.376446+00:00 ingress-1 haproxy[16887]: 34.50.57.250:48318 [20/Sep/2026:14:33:23.375] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 53/53/0/0/0 0/0 "GET
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 13:05:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.57.250 (250.57.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:05:13.942012 2026] [security2:error] [pid 10095:tid 10112] [client 34.50.57.250:40102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peimbert.com"] [uri "/.git/config"] [unique_id "aq_aCXFmCuI-OtmwC454IgAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack