๐บ๐ธ
TPI-Abuse
2026-09-24 19:24:01
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 15:23:54.644114 2026] [security2:error] [pid 9021:tid 9021] [client 34.77.110.84:57776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rochesterhistorical.org"] [uri "/.git/config"] [unique_id "arV4ynJDqPMKdzC9_g6riQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:58:08
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:58:03.051279 2026] [security2:error] [pid 29896:tid 29896] [client 34.77.110.84:34324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.roadtosalvation.org"] [uri "/.git/config"] [unique_id "arVyu5MiCmurnjU-66wouQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:29:56
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:29:51.748095 2026] [security2:error] [pid 31301:tid 31301] [client 34.77.110.84:48562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rjabramsonfoundation.org"] [uri "/.git/config"] [unique_id "arVsH-DPbMTQAMoW1yIkVQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 17:47:57
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 13:47:54.180809 2026] [security2:error] [pid 21019:tid 21019] [client 34.77.110.84:47316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rimaine.org"] [uri "/.git/config"] [unique_id "arViSvb3LAWwL3AqC4JORwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-24 02:29:26
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-23 22:01:19
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-22.
show less
Web App Attack
SSH
Hacking
๐ซ๐ท
COMAITE
2026-09-22 08:32:24
(2 days ago)
Suspicious URL access.
Web App Attack
๐ช๐ธ
robotstxt
2026-09-21 20:24:35
(3 days ago)
34.77.110.84 - - [21/Sep/2026:20:24:20 +0000] "GET /.env HTTP/1.1" 403 208 "-" "Mozilla/5.0 (Windows ...
show more
34.77.110.84 - - [21/Sep/2026:20:24:20 +0000] "GET /.env HTTP/1.1" 403 208 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.110.84 - - [21/Sep/2026:20:24:20 +0000] "GET /.env.local HTTP/1.1" 403 208 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.110.84 - - [21/Sep/2026:20:24:20 +0000] "GET /.env.production HTTP/1.1" 403 208 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.110.84 - - [21/Sep/2026:20:24:20 +0000] "GET /.env.staging HTTP/1.1" 403 208 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.77.110.84 - - [21/Sep/2026:20:24:20 +0000] "GET /.env.development HTTP/1.1" 403 208 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 20:17:05
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.77.110.84 (84.110.77.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:16:59.966232 2026] [security2:error] [pid 6303:tid 6422] [client 34.77.110.84:40780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedfinancialmanager.org"] [uri "/.git/config"] [unique_id "arGQu2df4MnZNwwXhAzAwwAAAZY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Hippoline
2026-09-21 15:21:23
(3 days ago)
[Mon Sep 21 17:21:19.913337 2026] [authz_core:error] [pid 3553] [client 34.77.110.84:45890] AH01630: ...
show more
[Mon Sep 21 17:21:19.913337 2026] [authz_core:error] [pid 3553] [client 34.77.110.84:45890] AH01630: client denied by server configuration: /var/www/championnat.lu/web/cakephp
[Mon Sep 21 17:21:22.883497 2026] [authz_core:error] [pid 10738] [client 34.77.110.84:33442] AH01630: client denied by server configuration: /var/www/championnat.lu/web/phpinfo.php
[Mon Sep 21 17:21:22.909156 2026] [authz_core:error] [pid 10738] [client 34.77.110.84:33442] AH01630: client denied by server configuration: /var/www/championnat.lu/web/info.php
[Mon Sep 21 17:21:22.927193 2026] [authz_core:error] [pid 10738] [client 34.77.110.84:33442] AH01630: client denied by server configuration: /var/www/championnat.lu/web/php.php
[Mon Sep 21 17:21:22.942852 2026] [authz_core:error] [pid 10738] [client 34.77.110.84:33442] AH01630: client denied by server configuration: /var/www/championnat.lu/web/i.php
...
show less
Brute-Force
Web App Attack