๐บ๐ธ
inderiva6
2026-09-29 17:28:35
(14 hours ago)
Automated HTTP(S) attack blocked by first-party WAF. FirstSeen=2026-09-29T17:26:18Z; LastSeen=2026-0 ...
show more
Automated HTTP(S) attack blocked by first-party WAF. FirstSeen=2026-09-29T17:26:18Z; LastSeen=2026-09-29T17:28:35Z; Requests=258; EvidenceHits=127; DistinctPaths=258; Methods=GET; Rules=scanner:127; SamplePaths=/.env|/.env.backup|/.env.backup1|/.env.backup2|/.env.bak; LogDigest=8ac40cfd5aec32627f9a21fdc19e0711e19070f98cb0c7577d893f8e6f08adb6.
show less
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-09-28 22:49:11
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 19:35:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 15:35:45.311769 2026] [security2:error] [pid 1400:tid 1400] [client 34.81.91.188:56272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "incident.oxfordgliding.com"] [uri "/.git/config"] [unique_id "arrBkdp_e3tcD8h5xSyoTgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 14:10:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 10:10:27.303945 2026] [security2:error] [pid 32670:tid 32670] [client 34.81.91.188:48050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eaglesnestfuelfarm.com"] [uri "/.git/config"] [unique_id "arp1U1J3hwy6xiX8mmO5MQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 13:50:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 09:50:24.949360 2026] [security2:error] [pid 17118:tid 17118] [client 34.81.91.188:48574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eagles-landing.wexfordcap.com"] [uri "/.git/config"] [unique_id "arpwoAegN-2zPQwWTzxXfQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:33:24
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:33:17.253319 2026] [security2:error] [pid 32465:tid 32465] [client 34.81.91.188:57792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.nolenelam.com"] [uri "/.git/config"] [unique_id "arlvfW9tTQqhaxFl7CtN_gAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 18:56:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 14:56:00.144734 2026] [security2:error] [pid 23263:tid 23263] [client 34.81.91.188:38446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.nolaanime.com"] [uri "/.git/config"] [unique_id "arlmwGuICxNSsv-m-c6m_QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 14:58:38
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 10:58:30.749342 2026] [security2:error] [pid 10371:tid 10419] [client 34.81.91.188:52370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.dpscsde.com"] [uri "/.git/config"] [unique_id "arfdlp90Sb-uUPOmELus2gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-24 13:04:22
(5 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.81.91.188 (TW/Taiwan/Taipei City/Tai ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.81.91.188 (TW/Taiwan/Taipei City/Taipei/188.91.81.34.bc.googleusercontent.com)
show less
SQL Injection
๐ฎ๐น
VHosting
2026-09-20 19:40:03
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐จ๐ฆ
Anytech
2026-09-20 17:10:44
(1 week ago)
Blocked by ConnMonitor
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-16 22:00:42
(4 months ago)
Auto-ban: 210 malicious requests on 2026-05-15 (e.g., env/backup probes, brute-force, or error burst ...
show more
Auto-ban: 210 malicious requests on 2026-05-15 (e.g., env/backup probes, brute-force, or error bursts).
show less
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-05-15 09:40:40
(4 months ago)
917 requests with url.path *.sql.gz
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-15 09:15:27
(4 months ago)
(mod_security) mod_security (id:210730) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.81.91.188 (188.91.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 05:15:23.798672 2026] [security2:error] [pid 13620:tid 13620] [client 34.81.91.188:59420] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||naomipyle.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "naomipyle.com"] [uri "/api.sql"] [unique_id "agbkKyFYC7M51bZ0Zk-e2wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-05-15 03:18:08
(4 months ago)
(modsecurity) srv101 ModSecurity 34.81.91.188 (TW/-/188.91.81.34.bc.googleusercontent.com): 10 in th ...
show more
(modsecurity) srv101 ModSecurity 34.81.91.188 (TW/-/188.91.81.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack