🇷🇴
iulianh
2026-09-02 21:54:08
(15 hours ago)
80,443
Brute-Force
SSH
Anonymous
2026-09-01 19:32:25
(1 day ago)
34.97.233.137 - - [01/Sep/2026:21:31:57 +0200] "GET /.git/config HTTP/1.1" 403 625 "-" "Mozilla/5.0 ...
show more
34.97.233.137 - - [01/Sep/2026:21:31:57 +0200] "GET /.git/config HTTP/1.1" 403 625 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.233.137 - - [01/Sep/2026:21:31:57 +0200] "GET /.env HTTP/1.1" 403 625 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.233.137 - - [01/Sep/2026:21:31:58 +0200] "GET /.env.local HTTP/1.1" 403 625 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.233.137 - - [01/Sep/2026:21:31:58 +0200] "GET /.env.production HTTP/1.1" 403 625 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.233.137 - - [01/Sep/2026:21:31:58 +0200] "GET /.env.staging HTTP/1.1" 403 625 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko)
...
show less
DDoS Attack
🇺🇸
TPI-Abuse
2026-09-01 18:59:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:58:58.843832 2026] [security2:error] [pid 14153:tid 14153] [client 34.97.233.137:40302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.academicaic.com.ltscatering.com"] [uri "/.git/config"] [unique_id "apcgcqCUU4o7nY-puzItSwAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-01 18:55:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-01 18:30:02
(1 day ago)
suspicious request in access.log
Web App Attack
🇫🇷
Octopuce
2026-09-01 17:43:33
(1 day ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
NXTwoThou
2026-05-27 07:55:40
(3 months ago)
/.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-05-27 06:30:48
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 02:30:42.415207 2026] [security2:error] [pid 26150:tid 26187] [client 34.97.233.137:60404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.purposethroughpainco.com"] [uri "/.git/config"] [unique_id "ahaPkv2wCWqlqKady6x_2gAAAcc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-27 04:29:24
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 00:29:16.840891 2026] [security2:error] [pid 14405:tid 14405] [client 34.97.233.137:44704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.francisautodetailing.com"] [uri "/.git/config"] [unique_id "ahZzHN5D0R3yZwVdiGuQ6wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-27 04:06:13
(3 months ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
🇳🇱
ParaBug
2026-05-27 03:40:43
(3 months ago)
34.97.233.137 - - [27/May/2026:05:40:42 +0200] "GET /.git/config HTTP/1.1" 301 3111 "-" "Mozilla/5.0 ...
show more
34.97.233.137 - - [27/May/2026:05:40:42 +0200] "GET /.git/config HTTP/1.1" 301 3111 "-" "Mozilla/5.0 (Linux; Android 9; SM-A505F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-05-27 03:24:23
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:24:16.096648 2026] [security2:error] [pid 32665:tid 32665] [client 34.97.233.137:45006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.gevieworld.com"] [uri "/.git/config"] [unique_id "ahZj4Ek8hyCFmQK1WO9L6QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇱🇻
garmtech.com
2026-05-27 03:17:33
(3 months ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-05-27 02:29:49
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:29:43.334152 2026] [security2:error] [pid 19073:tid 19073] [client 34.97.233.137:52894] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.buckinghambluesbar.com"] [uri "/.git/config"] [unique_id "ahZXF49Bd1i8DnVVNfL7QgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-05-27 01:44:29
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.233.137 (137.233.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 21:44:22.701041 2026] [security2:error] [pid 4295:tid 4295] [client 34.97.233.137:51396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "api-qa-global.okwellbeing.com"] [uri "/.git/config"] [unique_id "ahZMdlto-EGXBIElKBdquwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack