🇺🇸
TPI-Abuse
2026-09-07 08:49:30
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:49:23.541124 2026] [security2:error] [pid 20599:tid 20599] [client 34.94.138.109:44560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.thebestac.com"] [uri "/.git/config"] [unique_id "ap56k08UJFj6p3dj6ZIe3gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:22:21
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:22:14.194971 2026] [security2:error] [pid 13716:tid 13716] [client 34.94.138.109:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.theabstractpress.com"] [uri "/.git/config"] [unique_id "ap50Nuw2zlciLLEFwcIFLAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:10:10
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:10:03.255983 2026] [security2:error] [pid 7554:tid 7554] [client 34.94.138.109:36140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.avaliantlife.com"] [uri "/.git/config"] [unique_id "ap5jS_ErNq4BUKR8xDrDUQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Hazzard
2026-09-07 06:51:07
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
🇩🇪
Grossmann-Gruppe
2026-09-07 06:36:43
(3 hours ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
🇩🇪
itsolon
2026-09-07 06:28:17
(4 hours ago)
[07/Sep/2026:08:28:16 +0200] 17887624964.049835 34.94.138.109 43010 217.154.7.177 443
[07/Sep/2026:0 ...
show more
[07/Sep/2026:08:28:16 +0200] 17887624964.049835 34.94.138.109 43010 217.154.7.177 443
[07/Sep/2026:08:28:16 +0200] 178876249686.410970 34.94.138.109 43010 217.154.7.177 443
[07/Sep/2026:08:28:16 +0200] 178876249651.317713 34.94.138.109 43010 217.154.7.177 443
[07/Sep/2026:08:28:16 +0200] 178876249641.495912 34.94.138.109 43010 217.154.7.177 443
[07/Sep/2026:08:28:16 +0200] 178876249649.328434 34.94.138.109 43010 217.154.7.177 443
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
🇺🇸
masterguru
2026-09-07 05:45:59
(4 hours ago)
Remote Command Execution: Unix Shell Expression Found. Pattern match "(?:\\\\$(?:\\\\((?:\\\\(.*\\\\ ...
show more
Remote Command Execution: Unix Shell Expression Found. Pattern match "(?:\\\\$(?:\\\\((?:\\\\(.*\\\\)|.*)\\\\)|\\\\{.*\\\\})| (932130-169)
show less
Hacking
🇩🇪
rh24
2026-09-07 05:23:52
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.94.138.109 (US/United States/109.138 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.94.138.109 (US/United States/109.138.94.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-07 04:26:33
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 00:26:26.368816 2026] [security2:error] [pid 32116:tid 32116] [client 34.94.138.109:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.atlascoombs.com"] [uri "/.git/config"] [unique_id "ap488j9G7lwwCqy1YEHu3gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 04:09:50
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 00:09:44.516190 2026] [security2:error] [pid 31073:tid 31073] [client 34.94.138.109:59028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.athletestandard.com"] [uri "/.git/config"] [unique_id "ap45CGbPCek0OZR1qp6XKAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
screwlooseit.com.au
2026-09-07 03:49:34
(6 hours ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/109.138.94.34.bc.googleuserconten ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/109.138.94.34.bc.googleusercontent.com
show less
Web App Attack
🇩🇪
grassau.com
2026-09-07 03:37:56
(6 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.94.138.109 (US/United States/Califor ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.94.138.109 (US/United States/California/Los Angeles/109.138.94.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-07 02:19:19
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 22:19:16.349083 2026] [security2:error] [pid 7389:tid 7389] [client 34.94.138.109:53612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.asiancommoditiescorporation.com"] [uri "/.git/config"] [unique_id "ap4fJNitytPaGzNo7EJG1QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 02:00:11
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.138.109 (109.138.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 22:00:04.885258 2026] [security2:error] [pid 26188:tid 26188] [client 34.94.138.109:38980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.asfmglobal.com"] [uri "/.git/config"] [unique_id "ap4apCTr1h-8LlZ--PUNUwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-07 01:49:17
(8 hours ago)
Multiple WAF Violations
Web App Attack