🇬🇧
consul.to
2026-08-29 03:51:26
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 22:55:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:54:57.973470 2026] [security2:error] [pid 32355:tid 32355] [client 34.88.6.26:57260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "skyesongtollers.com"] [uri "/site/.git/config"] [unique_id "apIRwQHsTwDuwyujij4TowAAADw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 18:30:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:30:15.990126 2026] [security2:error] [pid 23422:tid 23422] [client 34.88.6.26:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.shubil.com"] [uri "/wordpress/.git/config"] [unique_id "apHTt2avVCP6SfQbXgg7YwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 17:09:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 13:09:07.169804 2026] [security2:error] [pid 15921:tid 15921] [client 34.88.6.26:33558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "otcda-ts.com"] [uri "/www/.git/config"] [unique_id "apHAs5OiRUEL3Z1vqKei8AAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
BlueWire Hosting
2026-08-28 16:02:51
(1 day ago)
Aggressive scanning resulting into 404
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-28 15:22:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:22:31.460121 2026] [security2:error] [pid 2754589:tid 2754692] [client 34.88.6.26:42508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thebigquestions.org"] [uri "/wordpress/.git/config"] [unique_id "apGnty1sB9VMuemgdcUlawAAAZU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-08-28 15:11:54
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇫🇷
dynamix
2026-08-28 14:44:19
(1 day ago)
Multiple WAF Violations
Web App Attack
🇲🇽
octageeks.com
2026-08-28 04:24:57
(2 days ago)
Wordpress malicious attack:[octablocked]
Web App Attack
🇳🇱
homeshowdomain.nl
2026-08-27 22:01:16
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-26.
show less
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-08-27 17:58:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:58:45.790348 2026] [security2:error] [pid 24506:tid 24506] [client 34.88.6.26:52110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tlphotogifts.com.iyp-home.com"] [uri "/api/.git/config"] [unique_id "apB61ecdqUPWan4lpWIvRAAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 14:50:41
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:949110) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:50:33.321880 2026] [security2:error] [pid 11453:tid 11453] [client 34.88.6.26:58576] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.auranet.cescfoundation.org"] [uri "/app/.git/config"] [unique_id "apBOuXqB3DtHcGeCWBuTUAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 12:02:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.6.26 (26.6.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:02:24.577371 2026] [security2:error] [pid 27711:tid 27711] [client 34.88.6.26:36976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.fulaso.steambalancing.com"] [uri "/backend/.git/config"] [unique_id "apAnUH2PFocHerKjxMaYNAAAAD8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-08-27 11:56:30
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-08-27 11:19:54
(2 days ago)
Multiple WAF Violations
Web App Attack