๐บ๐ธ
TPI-Abuse
2026-06-15 08:53:02
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:52:55.217454 2026] [security2:error] [pid 10827:tid 10827] [client 34.131.220.253:51072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.patterson.jamesallenwalker.com"] [uri "/backend/.git/config"] [unique_id "ai-9ZwBm1OG17ItGBMLVDAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-06-15 08:45:18
(3 months ago)
2026-06-15 08:44:50 GET /v2/.git/config - - 34.131.220.253 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Ma ...
show more
2026-06-15 08:44:50 GET /v2/.git/config - - 34.131.220.253 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_14_5)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/75.0.3770.80+Safari/537.36 - 301 623
2026-06-15 08:44:50 GET /src/.git/config - - 34.131.220.253 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_14_5)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/75.0.3770.80+Safari/537.36 - 301 625
2026-06-15 08:44:50 GET /backend/.git/config - - 34.131.220.253 HTTP/1.1 Mozilla/5.0+(Linux;+Android+9;+VOG-L29)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/76.0.3809.111+Mobile+Safari/537.36 - 301 633
2026-06-15 08:44:50 GET /symfony/.git/config - - 34.131.220.253 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64;+rv:15.0)+Gecko/20120724+Debian+Iceweasel/15.02 - 301 633
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:21:34
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:21:26.829979 2026] [security2:error] [pid 9304:tid 9304] [client 34.131.220.253:50658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bandpd.com"] [uri "/www/.git/config"] [unique_id "ai-2BkiTFQUvkAuBAhrv-wAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 06:28:12
(3 months ago)
(modsecurity) srv201 ModSecurity 34.131.220.253 (IN/India/253.220.131.34.bc.googleusercontent.com): ...
show more
(modsecurity) srv201 ModSecurity 34.131.220.253 (IN/India/253.220.131.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:23:20
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:23:13.940428 2026] [security2:error] [pid 15950:tid 15950] [client 34.131.220.253:33732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "christianbroadcastingleague.com"] [uri "/backend/.git/config"] [unique_id "ai-MQV8kEK-K_zMdZa_XggAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 04:49:17
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:49:10.210785 2026] [security2:error] [pid 9221:tid 9221] [client 34.131.220.253:56040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sydneysue.com"] [uri "/api/.git/config"] [unique_id "ai-ERngAqVojDMAe3w_3yAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 04:48:07
(3 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐จ๐ญ
Origon
2026-06-15 02:12:54
(3 months ago)
http-sensitive-files - IP: 34.131.220.253 - time="2026-06-15T04:12:53+02:00" level=info msg="(555f6 ...
show more
http-sensitive-files - IP: 34.131.220.253 - time="2026-06-15T04:12:53+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.131.220.253 (IN/396982) : 4h ban on Ip 34.131.220.253" module=db
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 01:28:36
(3 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:21:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:21:12.217368 2026] [security2:error] [pid 30351:tid 30351] [client 34.131.220.253:58106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "outofthebluephotography.love-n-promises.com"] [uri "/.git/config"] [unique_id "ai9TiBhsqk_A0RC7xUwazAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:05:20
(3 months ago)
(mod_security) mod_security (id:949110) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:949110) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:05:07.954985 2026] [security2:error] [pid 18357:tid 18357] [client 34.131.220.253:53694] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "woodlandventures.com"] [uri "/dist/.git/config"] [unique_id "ai9Bs6sU2pmRQBamt2tCygAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
grassau.com
2026-06-14 22:58:16
(3 months ago)
(mod_security) mod_security triggered on hostname [redacted] 34.131.220.253 (IN/India/National Capit ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.131.220.253 (IN/India/National Capital Territory of Delhi/New Delhi/253.220.131.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-14 22:53:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.220.253 (253.220.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:53:49.574924 2026] [security2:error] [pid 8845:tid 8845] [client 34.131.220.253:53838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.asfmglobal.com"] [uri "/admin/.git/config"] [unique_id "ai8w_VC9O-jDW2VNzf-fPwAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 21:59:21
(3 months ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking
๐ง๐พ
lns.bz
2026-06-14 21:45:54
(3 months ago)
Too many 404 requests [BY]
Web App Attack