๐ฟ๐ฆ
conure.sh
2026-09-03 01:11:05
(2 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-02 23:31:40
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.75.64.148 (US/United States/South Ca ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.75.64.148 (US/United States/South Carolina/North Charleston/148.64.75.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-02 13:54:20
(13 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:54:12.428002 2026] [security2:error] [pid 31079:tid 31079] [client 34.75.64.148:56482] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||antispam.semisysteme.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "antispam.semisysteme.com"] [uri "/access.log"] [unique_id "apgqhDmKgvbF44qS6UDKfQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:44:36
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:44:33.256303 2026] [security2:error] [pid 3623:tid 3623] [client 34.75.64.148:33250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "realstorybooks.com"] [uri "/app/.git/config"] [unique_id "apfT4S2VhKeBTMaKW0rn8QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:22:44
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:22:38.758404 2026] [security2:error] [pid 20885:tid 20885] [client 34.75.64.148:55458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocknwalktours.com"] [uri "/app/.git/config"] [unique_id "apfOvqFcGigqzTAyQVFXOgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-02 07:09:07
(20 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:34:38
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:34:32.013994 2026] [security2:error] [pid 11404:tid 11404] [client 34.75.64.148:51072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.landeagle.com"] [uri "/public/.git/config"] [unique_id "ape1aBl8ZWqUfyWHoTCxMAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
clauss
2026-09-02 05:29:20
(22 hours ago)
34.75.64.148 - - [02/Sep/2026:08:29:20 +0300] "GET /wordpress/.git/config HTTP/1.1" 403 146 "-" "cru ...
show more
34.75.64.148 - - [02/Sep/2026:08:29:20 +0300] "GET /wordpress/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
34.75.64.148 - - [02/Sep/2026:08:29:20 +0300] "GET /var/www/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐ง๐พ
lns.bz
2026-09-02 04:35:23
(22 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-02 04:12:53
(23 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:44:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:44:01.439690 2026] [security2:error] [pid 16666:tid 16666] [client 34.75.64.148:47192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.menagri.com"] [uri "/site/.git/config"] [unique_id "apdxUZrI-URhEtoFQYHAwwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Anytech
2026-09-02 00:09:38
(1 day ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
Anonymous
2026-09-01 22:41:05
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ท๐ด
iulianh
2026-09-01 21:16:36
(1 day ago)
80,443
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-09-01 11:47:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.64.148 (148.64.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:47:16.760206 2026] [security2:error] [pid 24434:tid 24434] [client 34.75.64.148:39990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "midknight.borzois.com"] [uri "/.git/config"] [unique_id "apa7RJnqauGe3i_fb2thUQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack