๐บ๐ธ
TPI-Abuse
2026-06-08 10:42:58
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 06:42:52.125757 2026] [security2:error] [pid 26718:tid 26718] [client 34.101.71.17:36468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nordicbuilders.net"] [uri "/.git/config"] [unique_id "aiacrIX3KDQSN7mEE3z58AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-06-08 10:00:27
(5 hours ago)
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from ID.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-06-08T09:26:45Z
Ray ID: a086db570c8a9c77
UA: Mozilla/5.0 (Linux; Android 9; ONEPLUS A5010 Build/PKQ1.180716.001; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/66.0.3359.126 MQQBrowser/6.2 TBS/044807 Mobile Safari/537.36 MMWEBID/1699 MicroMessenger/7.0.6.1460(0x27000634) Process/tools NetType/4G Language/zh_CN
show less
Bad Web Bot
๐จ๐ญ
4server
2026-06-08 09:42:19
(5 hours ago)
[MonJun0811:42:14.6249572026][security2:error][pid3631062:tid3631277][client34.101.71.17:0]ModSecuri ...
show more
[MonJun0811:42:14.6249572026][security2:error][pid3631062:tid3631277][client34.101.71.17:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"aid-web.ch\"][uri\"/.git/config\"][unique_id\"aiaOdl5DokJy4VUk7JQakwAAAMs\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 07:10:38
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 03:10:35.332279 2026] [security2:error] [pid 16508:tid 16508] [client 34.101.71.17:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.forsaleincr.com"] [uri "/.git/config"] [unique_id "aiZq68j2wx7ZrIVCZIIjYgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 04:29:11
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 00:29:07.327962 2026] [security2:error] [pid 2043:tid 2043] [client 34.101.71.17:49648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drillworkscr.com"] [uri "/.git/config"] [unique_id "aiZFE8LkWho6Kz1mEfI7dQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-06-08 04:28:02
(10 hours ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
big-cloud.nl
2026-06-08 02:53:33
(12 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 02:42:12
(12 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.101.71.17 (17.71.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 22:42:09.087193 2026] [security2:error] [pid 28734:tid 28734] [client 34.101.71.17:54396] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "gaming.freedrm.org"] [uri "/.git/config"] [unique_id "aiYsAWP2w2wyrOYTLHETGwAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-08 01:07:20
(13 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack