๐ง๐ช
cmbplf
2026-10-05 01:27:18
(1 day ago)
6.631 requests with url.path *.env
1.193 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Site.eu
2026-10-04 22:39:33
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Alt255
2026-10-04 22:38:42
(1 day ago)
[ti-hosboov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: ...
show more
[ti-hosboov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.88.87.135 - - \[05/Oct/2026:00:38:31 +0200\] "GET /.git/config HTTP/1.1" 404 2156 "-" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-04 22:00:51
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-04 21:41:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:41:36.660472 2026] [security2:error] [pid 27477:tid 27477] [client 34.88.87.135:36702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelwithjenniferb.com"] [uri "/.git/config"] [unique_id "asLIEDW0DKIFZQo42KNlIgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 21:18:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:17:59.854961 2026] [security2:error] [pid 2825076:tid 2825082] [client 34.88.87.135:48530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelusa.us"] [uri "/.git/config"] [unique_id "asLCh-PBRCsm7uJfICjkvwAAAIA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 20:55:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:55:50.563067 2026] [security2:error] [pid 30326:tid 30326] [client 34.88.87.135:41134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelto.info"] [uri "/.git/config"] [unique_id "asK9VpuCliKxYGviYR7ybQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 20:37:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.88.87.135 (135.87.88.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:37:01.980386 2026] [security2:error] [pid 13289:tid 13289] [client 34.88.87.135:45510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelsupersonic.com"] [uri "/.git/config"] [unique_id "asK47R1RpQ4lIPqpgYjdUQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-10-04 19:29:26
(1 day ago)
Web scanning / probing for vulnerable paths | URL: /crm/.env | Evidence: travelplanet.pt 34.88.87.13 ...
show more
Web scanning / probing for vulnerable paths | URL: /crm/.env | Evidence: travelplanet.pt 34.88.87.135 - - [04/Oct/2026:21:28:35 +0200] \"GET /crm/.env HTTP/1.1\" 404 20558 \"-\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=FI 29499 | ASN: GOOGLE-CLOUD-PLATFORM | Country: FI
show less
Port Scan
Web App Attack
๐ฎ๐น
VHosting
2026-10-04 19:20:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-10-04 18:28:49
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
NewWavesApp
2026-10-04 18:23:29
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.88.87.135 (FI/Finland/135.87.88.34.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.88.87.135 (FI/Finland/135.87.88.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐ซ๐ท
masterguru
2026-09-21 10:15:29
(2 weeks ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐ฉ๐ช
kkw
2026-09-21 09:18:24
(2 weeks ago)
[REDACTED] 34.88.87.135 - - [21/Sep/2026:11:18:23 +0200] "GET /.git/config HTTP/1.1" 422 2239 "-" "M ...
show more
[REDACTED] 34.88.87.135 - - [21/Sep/2026:11:18:23 +0200] "GET /.git/config HTTP/1.1" 422 2239 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-21 09:14:48
(2 weeks ago)
Excessive 404/403 errors
Brute-Force