๐ง๐ช
cmbplf
2026-06-26 05:39:48
(7 hours ago)
580 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐ฉ๐ช
4server
2026-06-26 02:37:48
(11 hours ago)
[FriJun2604:37:45.6314552026][security2:error][pid2588690:tid2588706][client34.101.95.111:0]ModSecur ...
show more
[FriJun2604:37:45.6314552026][security2:error][pid2588690:tid2588706][client34.101.95.111:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"lascalasagl.ch\"][uri\"/public/.git/config\"][unique_id\"aj3l-UcL_XiraE6ZN92cvgAAAA0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 02:30:15
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 22:30:08.942635 2026] [security2:error] [pid 4941:tid 4941] [client 34.101.95.111:52202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.servicios.imerka.com.mx"] [uri "/web/.git/config"] [unique_id "aj3kMBK2rlu_XbMgWmyMgwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-26 00:03:48
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 20:03:44.672110 2026] [security2:error] [pid 16552:tid 16552] [client 34.101.95.111:47406] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.luckydawgs.com"] [uri "/app/.git/config"] [unique_id "aj3B4JVveH9QJpelXWPAXQAAAG8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 23:47:15
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 19:47:10.884821 2026] [security2:error] [pid 23763:tid 23763] [client 34.101.95.111:43546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "instagenii.com"] [uri "/public/.git/config"] [unique_id "aj29_jYnaHFml0E4QsUeuAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-25 23:37:48
(14 hours ago)
34.101.95.111 - - [26/Jun/2026:01:37:41 +0200] "GET /assets/.git/config HTTP/1.1" 403 177 "-" "Mozil ...
show more
34.101.95.111 - - [26/Jun/2026:01:37:41 +0200] "GET /assets/.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 (Linux; Android 9; SAMSUNG SM-G975F Build/PPR1.180610.011) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/9.4 Chrome/67.0.3396.87 Mobile Safari/537.36"
34.101.95.111 - - [26/Jun/2026:01:37:41 +0200] "GET /v1/.git/config HTTP/1.1" 403 117 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; tr; rv:1.9.2.8) Gecko/20100722 Firefox/3.6.8 ( .NET CLR 3.5.30729; .NET4.0E)"
34.101.95.111 - - [26/Jun/2026:01:37:41 +0200] "GET /api/.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.87 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 23:20:51
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.95.111 (111.95.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 25 19:20:46.209438 2026] [security2:error] [pid 8727:tid 8727] [client 34.101.95.111:45454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mainescentsecrets.com"] [uri "/project/.git/config"] [unique_id "aj23zvxVCufYAs3NrnB4CwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-25 18:01:54
(19 hours ago)
20 attempts against mh-misbehave-ban on mist
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Bots.go.to.hell
2026-06-25 14:56:10
(22 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐จ๐ญ
ALPHANET
2026-06-25 13:41:25
(23 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack