🇺🇸
mnsf
2026-08-28 15:05:16
(1 day ago)
Too many Status 40X (14)
Scanning/Probing (23)
Request Overload (243)
Brute-Force
Web App Attack
Anonymous
2026-08-28 10:05:19
(1 day ago)
"GET /app/.git/config HTTP/1.1"
Hacking
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-08-27 18:27:51
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇫🇷
dynamix
2026-08-27 17:37:35
(2 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-08-27 14:47:33
(2 days ago)
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /backend/.git/config HTTP/1.1" 404 196 "-" "cru ...
show more
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /backend/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /public/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /html/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /var/www/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /src/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /htdocs/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /www/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /wordpress/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
34.106.119.187 - - [27/Aug/2026:22:47:32 +0800] "GET /app/.git/conf
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 13:08:48
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:08:41.099440 2026] [security2:error] [pid 2999:tid 2999] [client 34.106.119.187:54364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "venture2-22.cain2016.org"] [uri "/htdocs/.git/config"] [unique_id "apA22SRSkOdAUBNsf3kkEwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-08-27 09:20:03
(2 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇫🇷
masterguru
2026-08-27 04:47:23
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 04:07:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:06:53.069710 2026] [security2:error] [pid 11217:tid 11217] [client 34.106.119.187:45500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "megaandina.com"] [uri "/src/.git/config"] [unique_id "ao-33cBtmgnwbOeNO-xjdwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-08-27 03:05:30
(2 days ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
🇮🇹
VHosting
2026-08-27 02:45:05
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇬🇧
consul.to
2026-08-27 02:00:47
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
🇫🇷
masterguru
2026-08-27 01:14:44
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 00:45:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 20:44:58.202787 2026] [security2:error] [pid 1148192:tid 1148199] [client 34.106.119.187:42698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cepspublishing.com.frcconstruction.com"] [uri "/.git/config"] [unique_id "ao-IinTKJ3CGWmwoLwww2gAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-26 23:19:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.119.187 (187.119.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 19:19:09.430610 2026] [security2:error] [pid 21492:tid 21492] [client 34.106.119.187:33094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pluscures.com"] [uri "/var/www/.git/config"] [unique_id "ao90bQtY7Yj4ma1Wuz95BwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack