๐บ๐ธ
TPI-Abuse
2026-08-31 16:04:36
(10 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:04:32.775481 2026] [security2:error] [pid 8587:tid 8587] [client 34.121.25.34:33050] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "shakirahussien.com"] [uri "/.git/config"] [unique_id "apWmEKggANWXZc22YlqYSwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 06:46:37
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:46:29.876156 2026] [security2:error] [pid 21470:tid 21489] [client 34.121.25.34:32608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "possibilitywhisperer.com"] [uri "/.git/config"] [unique_id "apUjRbdL5yVXANojQV29yAAAAVE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 05:14:10
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 01:14:06.177612 2026] [security2:error] [pid 5329:tid 5329] [client 34.121.25.34:34264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weavergroup.us"] [uri "/.git/config"] [unique_id "apUNnosw-AoWHYEUl2NW2wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ALPHANET
2026-08-31 04:44:12
(22 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack
Anonymous
2026-08-31 04:14:31
(22 hours ago)
34.121.25.34 - - [31/Aug/2026:06:14:31 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ( ...
show more
34.121.25.34 - - [31/Aug/2026:06:14:31 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Web App Attack
๐ธ๐ฌ
securejdprop
2026-08-31 04:06:39
(22 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 03:51:48
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 23:51:43.744198 2026] [security2:error] [pid 14358:tid 14358] [client 34.121.25.34:53740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jonasrimkunas.com"] [uri "/.git/config"] [unique_id "apT6T5OD23jpLhdtq62JXAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-31 03:48:02
(23 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
mnsf
2026-08-31 03:05:34
(23 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 02:43:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 22:43:11.674506 2026] [security2:error] [pid 17684:tid 17684] [client 34.121.25.34:38660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "desdier.com"] [uri "/.git/config"] [unique_id "apTqP9MMj6LUiXF4Xrk_ggAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 00:15:03
(1 day ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 00:12:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 20:12:22.600644 2026] [security2:error] [pid 5412:tid 5412] [client 34.121.25.34:3938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "joevallone.com"] [uri "/.git/config"] [unique_id "apTG5vOe45zN8fRSvVmdLQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 23:55:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 19:55:11.664514 2026] [security2:error] [pid 3240269:tid 3240293] [client 34.121.25.34:33592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "condobudget.com"] [uri "/.git/config"] [unique_id "apTC35d2SrlcJDCtBLuFnwAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 23:06:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 19:06:33.387780 2026] [security2:error] [pid 21825:tid 21825] [client 34.121.25.34:17698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "garantaconsulting.com"] [uri "/.git/config"] [unique_id "apS3eVZ-wXWTq3bcHsnwZAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 21:10:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.121.25.34 (34.25.121.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 17:10:33.777643 2026] [security2:error] [pid 7265:tid 7265] [client 34.121.25.34:58944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cns518.com"] [uri "/.git/config"] [unique_id "apScSQ6j81RJIcaZII_8NwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack