🇳🇴
Abuse Buster
2026-09-06 16:17:56
(13 hours ago)
34.89.255.192 - - [06/Sep/2026:18:17:55 +0200] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03,\xD2" 4 ...
show more
34.89.255.192 - - [06/Sep/2026:18:17:55 +0200] "\x16\x03\x01\x00\xEC\x01\x00\x00\xE8\x03\x03,\xD2" 400 150 "-" "-"
...
show less
Web App Attack
🇧🇪
sid3windr
2026-09-06 08:55:37
(21 hours ago)
GET /.git/config (Tarpitted for 2m10s, wasted 7.73kB)
Web App Attack
🇩🇪
Dennis
2026-09-06 07:31:57
(22 hours ago)
34.89.255.192 has been banned for triggering http-sensitive-files (5 events over 13.22454ms).
Brute-Force
Web App Attack
🇧🇾
lns.bz
2026-09-06 07:14:22
(22 hours ago)
Too many 404 requests [BY]
Web App Attack
🇬🇧
consul.to
2026-09-06 03:07:43
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 00:39:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 20:39:20.252281 2026] [security2:error] [pid 23386:tid 23386] [client 34.89.255.192:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "camerabshk.365soft.top"] [uri "/.git/config"] [unique_id "apy2OM173y_ylGK-0xGoRQAAAHs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 23:45:01
(1 day ago)
suspicious request in access.log
Web App Attack
🇩🇪
gadix
2026-09-05 11:38:41
(1 day ago)
[05/Sep/2026:13:38:37.359062 +0200] apv_PQmmgOwB87QxC8saqgAAABc 34.89.255.192 50764 127.0.0.1 7081
[ ...
show more
[05/Sep/2026:13:38:37.359062 +0200] apv_PQmmgOwB87QxC8saqgAAABc 34.89.255.192 50764 127.0.0.1 7081
[05/Sep/2026:13:38:37.360387 +0200] apv_PZ61MzCSMql-U2ZvsAAAAEk 34.89.255.192 50776 127.0.0.1 7081
[05/Sep/2026:13:38:37.362988 +0200] apv_PZ61MzCSMql-U2ZvsQAAAEU 34.89.255.192 50780 127.0.0.1 7081
...
show less
Web App Attack
🇪🇸
elcruzado.es
2026-09-05 02:33:50
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.89.255.192 (DE/Germany/192.255.89.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.89.255.192 (DE/Germany/192.255.89.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-05 02:09:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 22:08:57.441036 2026] [security2:error] [pid 15813:tid 15826] [client 34.89.255.192:55822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maestrosoler.com"] [uri "/site/.git/config"] [unique_id "apt5uRv8Pi_bf3qDMBqgnwAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-05 02:06:01
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 01:14:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:14:36.792212 2026] [security2:error] [pid 28105:tid 28105] [client 34.89.255.192:34446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "knoxworx.shop"] [uri "/www/.git/config"] [unique_id "apts_A4_mV0ziyXH01kVcQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-04 22:01:18
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-03.
show less
Web App Attack
SSH
Hacking
🇳🇴
jad-abuse
2026-09-04 20:00:22
(2 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 12 hits.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:12:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.255.192 (192.255.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:12:32.322661 2026] [security2:error] [pid 24724:tid 24724] [client 34.89.255.192:47842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.casademunt.com"] [uri "/html/.git/config"] [unique_id "apsYIHSnfHUAXuJD5GX-EQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack