๐บ๐ธ
TPI-Abuse
2026-09-16 14:05:45
(24 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:05:40.504040 2026] [security2:error] [pid 15414:tid 15436] [client 34.97.88.88:36872] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.annacaird.com.iancaird.com"] [uri "/.git/config"] [unique_id "aqqiNEhCLAMrXHKLH_bpggAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-09-16 13:40:02
(49 minutes ago)
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla ...
show more
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:43:24
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:43:16.949368 2026] [security2:error] [pid 7076:tid 7076] [client 34.97.88.88:42374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.atheismz.jessemeyers.com"] [uri "/.git/config"] [unique_id "aqqO5EOIkOBp9kh_90bRyQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-09-16 12:02:11
(2 hours ago)
Bad behaviour
Web Spam
๐ซ๐ท
masterguru
2026-09-16 10:05:34
(4 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-16 09:56:13
(4 hours ago)
Scanning for web/db/file exploits on www.ateliernw.nl
SQL Injection
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 09:10:06
(5 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ง๐ท
Halux
2026-09-16 06:43:58
(7 hours ago)
34.97.88.88 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 06:22:04
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 02:21:59.365417 2026] [security2:error] [pid 710:tid 719] [client 34.97.88.88:39558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.atechtransmission.ceol.us"] [uri "/.git/config"] [unique_id "aqo1hxcD2dqR6Ic7reghrwAAAQU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-16 06:03:57
(8 hours ago)
cloudlinux2 fail2ban: 2026-09-16 07:59:06,931 fail2ban.filter [1818]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-16 07:59:06,931 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 102.18.147.213 - 2026-09-16 07:59:06cloudlinux2 fail2ban: 2026-09-16 08:00:04,859 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 103.172.210.134 - 2026-09-16 08:00:04cloudlinux2 fail2ban: 2026-09-16 08:00:20,396 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 102.18.147.213 - 2026-09-16 08:00:20cloudlinux2 fail2ban: 2026-09-16 08:00:21,107 fail2ban.filter [1818]: INFO [recidive] Found 102.18.147.213 - 2026-09-16 08:00:20cloudlinux2 fail2ban: 2026-09-16 08:00:20,926 fail2ban.actions [1818]: NOTICE [plesk-modsecurity] Ban 102.18.147.213cloudlinux2 fail2ban: 2026-09-16 08:01:51,195 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 103.172.210.134 - 2026-09-16 08:01:51cloudlinux2 fail2ban: 2026-09-16 08:01:58,775 fail2ban.filter [1818]: INFO [plesk-wordpress] Found 173.239.218.230 - 2026-09-16 08:01:58cloudlinux2 fail2ban
show less
Web App Attack
Anonymous
2026-09-16 05:44:27
(8 hours ago)
34.97.88.88 - - [16/Sep/2026:07:44:00 +0200] "GET /.git/config HTTP/1.1" 403 563 "-" "Mozilla/5.0 (W ...
show more
34.97.88.88 - - [16/Sep/2026:07:44:00 +0200] "GET /.git/config HTTP/1.1" 403 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.88.88 - - [16/Sep/2026:07:44:00 +0200] "GET /.env HTTP/1.1" 403 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.88.88 - - [16/Sep/2026:07:44:01 +0200] "GET /.env.local HTTP/1.1" 403 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.88.88 - - [16/Sep/2026:07:44:01 +0200] "GET /.env.production HTTP/1.1" 403 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.88.88 - - [16/Sep/2026:07:44:01 +0200] "GET /.env.staging HTTP/1.1" 403 563 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.97.88
...
show less
DDoS Attack
๐ธ๐ช
vaia.cloud
2026-09-16 05:05:04
(9 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 04:48:36
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 04:01:21
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.88.88 (88.88.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:01:14.435068 2026] [security2:error] [pid 4674:tid 4674] [client 34.97.88.88:41520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.atame.elpais.mx"] [uri "/.git/config"] [unique_id "aqoUivuLSbMeFzvBO4TEBAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 03:29:16
(11 hours ago)
Excessive multi-domain requests
Brute-Force