Anonymous
2026-09-02 16:09:28
(8 hours ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-01 00:41:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 20:41:02.426151 2026] [security2:error] [pid 30044:tid 30044] [client 34.84.213.214:53770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teleplussolutions.com"] [uri "/.git/config"] [unique_id "apYfHqnObijHVwATXnwQSwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
screwlooseit.com.au
2026-09-01 00:29:16
(2 days ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/214.213.84.34.bc.googleuserconten ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/214.213.84.34.bc.googleusercontent.com
show less
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-08-31 16:47:25
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-31 16:29:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:29:26.664651 2026] [security2:error] [pid 17400:tid 17400] [client 34.84.213.214:60956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "the.dental"] [uri "/.git/config"] [unique_id "apWr5g-yiM7OMwra2dZbnQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
gadix
2026-08-31 15:27:30
(2 days ago)
[31/Aug/2026:17:27:28.894110 +0200] apWdYCbICfVPigA7p4YzAQAAAAA 34.84.213.214 43798 127.0.0.1 7081
[ ...
show more
[31/Aug/2026:17:27:28.894110 +0200] apWdYCbICfVPigA7p4YzAQAAAAA 34.84.213.214 43798 127.0.0.1 7081
[31/Aug/2026:17:27:29.893765 +0200] apWdYRLicAYM45C60xvcrgAAAEM 34.84.213.214 43812 127.0.0.1 7081
[31/Aug/2026:17:27:30.199940 +0200] apWdYhLicAYM45C60xvcrwAAAFM 34.84.213.214 43828 127.0.0.1 7081
...
show less
Web App Attack
🇳🇱
e.fierstra
2026-08-31 15:22:12
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 15:19:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:19:49.540811 2026] [security2:error] [pid 30202:tid 30202] [client 34.84.213.214:60730] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "the-schlosser.net"] [uri "/.git/config"] [unique_id "apWblT0N3I_GVqkcm_hqbAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 13:57:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 09:57:10.968312 2026] [security2:error] [pid 3370:tid 3370] [client 34.84.213.214:40326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "the-it-man.com"] [uri "/.git/config"] [unique_id "apWINpkpR_WA25MD1uN4CQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Octopuce
2026-08-31 13:09:34
(2 days ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 12:22:40
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:22:34.118686 2026] [security2:error] [pid 3720758:tid 3720838] [client 34.84.213.214:46034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "the-aquifer.com"] [uri "/.git/config"] [unique_id "apVyCupa2LH6PI85YmfnfQAAAcY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 11:39:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.213.214 (214.213.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:39:22.388234 2026] [security2:error] [pid 24969:tid 25080] [client 34.84.213.214:47218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thatspecial.com"] [uri "/.git/config"] [unique_id "apVn6lSVMGe5tRMV97I_qwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-08-31 11:08:36
(2 days ago)
Excessive multi-domain requests
Brute-Force
🇩🇪
EGP Abuse Dept
2026-08-31 10:51:20
(2 days ago)
Scanning for web/db/file exploits on thartoptiek.nl
SQL Injection
Bad Web Bot
Web App Attack
🇪🇸
pipeline.es
2026-08-31 10:11:19
(2 days ago)
Web scanning / probing for vulnerable paths | URL: /frontend/.env | Evidence: thanks4travel.pt 34.84 ...
show more
Web scanning / probing for vulnerable paths | URL: /frontend/.env | Evidence: thanks4travel.pt 34.84.213.214 - - [31/Aug/2026:12:10:37 +0200] \"GET /frontend/.env HTTP/1.1\" 404 20590 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=JP | ASN: GOOGLE-CLOUD-PLATFORM | Country: JP
show less
Port Scan
Web App Attack