🇺🇸
TPI-Abuse
2026-09-18 23:47:59
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 19:47:55.567949 2026] [security2:error] [pid 16280:tid 16280] [client 34.94.39.26:41696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "walkingwithafricans.org"] [uri "/.git/config"] [unique_id "aq3NqyLbF5Ny1Roi-owUuAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-18 18:05:10
(16 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
🇩🇪
jbcrn
2026-09-18 16:39:28
(17 hours ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /. User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 14:00:15
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 10:00:10.930989 2026] [security2:error] [pid 22886:tid 22886] [client 34.94.39.26:46132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "waleed.co"] [uri "/.git/config"] [unique_id "aq1D6p4BmTU5dy4VtgQ_1gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FD-IX
2026-09-18 10:14:15
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-18 08:15:12
(1 day ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-18 07:57:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 03:57:35.680826 2026] [security2:error] [pid 18830:tid 18830] [client 34.94.39.26:37446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wadenelson.com"] [uri "/.git/config"] [unique_id "aqzu74FFj5097v5OZ9RcPAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-18 07:14:53
(1 day ago)
Try to access /.git/config
Web App Attack
🇳🇱
e.fierstra
2026-09-18 06:17:27
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 06:12:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 02:12:43.719219 2026] [security2:error] [pid 31577:tid 31577] [client 34.94.39.26:54270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.montymilburn.com"] [uri "/.git/config"] [unique_id "aqzWWwPznPL5kpL7SifRngAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 05:28:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 01:28:12.768967 2026] [security2:error] [pid 13567:tid 13617] [client 34.94.39.26:37078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wakhan-adventure.com"] [uri "/.git/config"] [unique_id "aqzL7HsaVwESBgewbJT0GAAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 03:12:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 23:11:58.797698 2026] [security2:error] [pid 4448:tid 4509] [client 34.94.39.26:51002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mjkotob.com"] [uri "/.git/config"] [unique_id "aqyr_lKpZuwWKf_m9TpvVgAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 01:48:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 21:48:11.904737 2026] [security2:error] [pid 2375:tid 2388] [client 34.94.39.26:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mindgardens.com"] [uri "/.git/config"] [unique_id "aqyYW8dnRadw9Lij_maxEAAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
4server
2026-09-17 16:33:06
(1 day ago)
[ThuSep1718:33:03.4462182026][security2:error][pid2415345:tid2415375][client34.94.39.26:0]ModSecurit ...
show more
[ThuSep1718:33:03.4462182026][security2:error][pid2415345:tid2415375][client34.94.39.26:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"webdisk.martinairsagl.ch\"][uri\"/.env.bak\"][unique_id\"aqwWP1bKhrIr0BTlGJ4a3QAAAA8\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-17 13:10:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.94.39.26 (26.39.94.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 09:10:39.339059 2026] [security2:error] [pid 16253:tid 16253] [client 34.94.39.26:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mail-pmg.com"] [uri "/.git/config"] [unique_id "aqvmzxafig1JX05VLBYD2QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack