πΊπΈ
TPI-Abuse
2026-08-22 09:32:09
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.72.173.87 (87.173.72.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.72.173.87 (87.173.72.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 05:32:04.722994 2026] [security2:error] [pid 13452:tid 13452] [client 34.72.173.87:55174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pamelaweisberg.com"] [uri "/.git/HEAD"] [unique_id "aolslBRo7yjC8HZZLN1QIAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π·π΄
clauss
2026-08-22 08:28:19
(2 days ago)
34.72.173.87 - - [22/Aug/2026:11:28:19 +0300] "GET /.git/HEAD HTTP/2.0" 404 20 "-" "Mozilla/5.0 (Win ...
show more
34.72.173.87 - - [22/Aug/2026:11:28:19 +0300] "GET /.git/HEAD HTTP/2.0" 404 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
34.72.173.87 - - [22/Aug/2026:11:28:19 +0300] "GET /.git/HEAD HTTP/2.0" 404 20 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 07:52:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.72.173.87 (87.173.72.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.72.173.87 (87.173.72.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 03:51:59.401571 2026] [security2:error] [pid 30413:tid 30413] [client 34.72.173.87:52736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wendeenicole.com"] [uri "/.git/HEAD"] [unique_id "aolVH5mF3-gC0neXwP1aVAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-08-22 06:02:05
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-08-22 05:55:02
(2 days ago)
suspicious request in access.log
Web App Attack
π©πͺ
webanyone
2026-08-22 05:47:01
(2 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
πΊπ¦
URAN Publishing Service
2026-08-22 03:48:22
(2 days ago)
[22/Aug/2026:06:48:21 +0300] -- 34.72.173.87 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[22/Aug/2026:06:48:21 +0300] -- 34.72.173.87 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
π΅π±
Budyn
2026-08-22 03:09:02
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: panel.sweetpuddingtrap.online | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
π©πͺ
macrob
2026-08-22 03:03:27
(2 days ago)
2026/08/22 03:03:25 [error] 2660803#2660803: *506499358 access forbidden by rule, client: 34.72.173. ...
show more
2026/08/22 03:03:25 [error] 2660803#2660803: *506499358 access forbidden by rule, client: 34.72.173.87, server: binixo.mx, request: "GET /.git/HEAD HTTP/2.0", host: "binixo.mx"
2026/08/22 03:03:25 [error] 2660804#2660804: *506499373 access forbidden by rule, client: 34.72.173.87, server: binixo.mx, request: "GET /.git/HEAD HTTP/2.0", host: "binixo.mx"
2026/08/22 03:03:26 [error] 2660803#2660803: *506499401 access forbidden by rule, client: 34.72.173.87, server: binixo.mx, request: "GET /.svn/wc.db HTTP/2.0", host: "binixo.mx"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 02:26:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.72.173.87 (87.173.72.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.72.173.87 (87.173.72.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:25:57.621264 2026] [security2:error] [pid 22531:tid 22536] [client 34.72.173.87:53772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexlogic.com"] [uri "/.git/HEAD"] [unique_id "aokItZbfdKoe1ujs5mbI1QAAAII"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-15 21:59:46
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-14.
show less
Web App Attack
SSH
Hacking
πΊπΈ
jhuisi
2026-08-14 03:52:06
(1 week ago)
Mod Security Hit
Web App Attack
π«π·
masterguru
2026-08-14 03:17:49
(1 week ago)
Restricted File Access Attempt. Matched phrase "/.DS_Store" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack