πΊπΈ
TPI-Abuse
2026-06-09 02:52:51
(33 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:52:45.348967 2026] [security2:error] [pid 25624:tid 25624] [client 34.79.128.3:59176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.urbanrepairs.michaelward.com"] [uri "/.git/config"] [unique_id "aid__eVbBUhm_XYB8e981AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
4server
2026-06-09 01:30:17
(1 hour ago)
[TueJun0903:30:14.3382542026][security2:error][pid2772379:tid2772652][client34.79.128.3:0]ModSecurit ...
show more
[TueJun0903:30:14.3382542026][security2:error][pid2772379:tid2772652][client34.79.128.3:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"autodiscover.edilmarra.ch\"][uri\"/.git/config\"][unique_id\"aidspqxy_sGyzJITpHQTAQAAARQ\"]
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-09 01:09:25
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:09:21.031906 2026] [security2:error] [pid 6307:tid 6307] [client 34.79.128.3:44740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kboodjeh.com"] [uri "/.git/config"] [unique_id "aidnwQU5bipFTBz74X8jUgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 20:21:48
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:21:44.129839 2026] [security2:error] [pid 30429:tid 30429] [client 34.79.128.3:57778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jbservicesinc.net"] [uri "/.git/config"] [unique_id "aickWBp-QRiCN707G1isBAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 20:05:14
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:05:02.305857 2026] [security2:error] [pid 28953:tid 28953] [client 34.79.128.3:34718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.manaplas.com"] [uri "/.git/config"] [unique_id "aicgbrIDD5x2zpRwDqqOygAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
bescared
2026-06-08 19:48:38
(7 hours ago)
F2B - Malicious activity detected. URL Probing. -c23856ef-
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 17:16:47
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 13:16:43.261970 2026] [security2:error] [pid 13110:tid 13110] [client 34.79.128.3:45292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gdg1.com"] [uri "/.git/config"] [unique_id "aib4-zA_1GS_Z6KNJaDfKQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 11:01:06
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 07:01:00.064139 2026] [security2:error] [pid 28023:tid 28023] [client 34.79.128.3:50082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "notarialota.cl"] [uri "/.git/config"] [unique_id "aiag7FePfKXxtgMJHFm2kAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 10:31:46
(16 hours ago)
34.79.128.3 - - [08/Jun/2026:07:31:45 -0300] "GET /.git/config HTTP/1.1" 403 829 "-" "Mozilla/5.0 (X ...
show more
34.79.128.3 - - [08/Jun/2026:07:31:45 -0300] "GET /.git/config HTTP/1.1" 403 829 "-" "Mozilla/5.0 (X11; U; Linux ppc; en-US; rv:1.8.1.13) Gecko/20080313 Iceape/1.1.9 (Debian-1.1.9-5)"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
π©πͺ
4server
2026-06-08 10:11:38
(17 hours ago)
[MonJun0812:11:32.1348382026][security2:error][pid1055379:tid1055516][client34.79.128.3:0]ModSecurit ...
show more
[MonJun0812:11:32.1348382026][security2:error][pid1055379:tid1055516][client34.79.128.3:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"immobiliaretrentino.it\"][uri\"/.git/config\"][unique_id\"aiaVVKK0piRYMq9f5hEU_gAAARU\"]
show less
Port Scan
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 08:51:37
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:51:34.254280 2026] [security2:error] [pid 7024:tid 7115] [client 34.79.128.3:35252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "love-spells-magic.com"] [uri "/.git/config"] [unique_id "aiaClmRulQKSMSXyOC8cgQAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 05:25:02
(22 hours ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 03:53:11
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 23:53:06.903709 2026] [security2:error] [pid 21017:tid 21017] [client 34.79.128.3:40740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookingsouthafrica.com"] [uri "/.git/config"] [unique_id "aiY8omc1pPSabawRILP8DwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
voormedia
2026-06-08 03:38:08
(23 hours ago)
Accessed trap at '/.git/config'
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 02:28:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.79.128.3 (3.128.79.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 22:28:13.871805 2026] [security2:error] [pid 27006:tid 27006] [client 34.79.128.3:36144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tcjohnston.com"] [uri "/.git/config"] [unique_id "aiYova1XqTo7tXSD63F8fQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack