๐บ๐ธ
TPI-Abuse
2026-09-30 04:40:41
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:40:36.558690 2026] [security2:error] [pid 26089:tid 26089] [client 34.87.138.127:41402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "andysrecyclebin.com"] [uri "/.git/config"] [unique_id "arySxDDUsSlFRiVxcWcOPwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-09-29 18:58:03
(4 days ago)
Scan of vulnerable files
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-29 05:03:07
(5 days ago)
20 attempts against mh_ha-misbehave-ban on pf221113
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Sakusen
2026-09-29 04:04:55
(5 days ago)
Automated web attack: 265 reqs, 252 paths probed, 218 returned 404; probed: 206 .env, 43 .php, 2 oth ...
show more
Automated web attack: 265 reqs, 252 paths probed, 218 returned 404; probed: 206 .env, 43 .php, 2 other, 1 .git
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:48:23
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:48:16.255327 2026] [security2:error] [pid 16180:tid 16180] [client 34.87.138.127:39200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.texasbordertours.com"] [uri "/.git/config"] [unique_id "arlzAPLC9epQ4OR46c4JAQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:08:00
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:07:56.491448 2026] [security2:error] [pid 29192:tid 29192] [client 34.87.138.127:54252] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tevalaur.com"] [uri "/.git/config"] [unique_id "arlpjK-diz1FqXyPM1ib9QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:49:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.87.138.127 (127.138.87.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:49:06.055423 2026] [security2:error] [pid 24374:tid 24374] [client 34.87.138.127:41018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.pandahh.com"] [uri "/.git/config"] [unique_id "arfpcjrqNUUnODtFdawM0QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-26 05:51:29
(1 week ago)
[livebd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Examp ...
show more
[livebd] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.87.138.127 - - [26/Sep/2026:07:51:25 +0200] "GET /.git/config HTTP/1.1" 404 2142 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
curiosity
2026-09-25 23:12:56
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
๐ฉ๐ช
rh24
2026-09-24 17:13:28
(1 week ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.87.138.127 (SG/Singapore/127.138.87.34 ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.87.138.127 (SG/Singapore/127.138.87.34.bc.googleusercontent.com)
show less
Hacking
Anonymous
2026-09-24 15:34:50
(1 week ago)
Aggressive web scan
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 17:20:05
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Cloud86 B.V.
2026-09-12 04:00:04
(3 weeks ago)
categories: Email Spam
Email Spam