🇺🇸
TPI-Abuse
2026-09-14 23:28:59
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 19:28:55.591408 2026] [security2:error] [pid 26072:tid 26072] [client 34.134.233.15:54248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jcbergapparel.com"] [uri "/.git/config"] [unique_id "aqiDN-gSBrGEYxOk0CvzIAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
Roper123
2026-09-14 22:35:36
(4 hours ago)
Web app attack
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 22:00:43
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 18:00:39.601728 2026] [security2:error] [pid 30181:tid 30181] [client 34.134.233.15:14764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.basicsa.com"] [uri "/.git/config"] [unique_id "aqhuh6EBouHVyRAyoBnAVgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-14 22:00:09
(5 hours ago)
34.134.233.15 - - [14/Sep/2026:19:00:07 -0300] "GET /.git/config HTTP/1.1" 403 874 "-" "Mozilla/5.0 ...
show more
34.134.233.15 - - [14/Sep/2026:19:00:07 -0300] "GET /.git/config HTTP/1.1" 403 874 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:139.0) Gecko/20100101 Firefox/139.0"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
🇫🇷
MatStef132
2026-09-14 21:46:20
(5 hours ago)
MatShield L7: blocked on protection-core-01-panel.mathost.eu (secret-path-probe)
DDoS Attack
🇺🇸
TPI-Abuse
2026-09-14 21:40:26
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 17:40:18.051366 2026] [security2:error] [pid 15653:tid 15653] [client 34.134.233.15:48608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.adm-sal.com"] [uri "/.git/config"] [unique_id "aqhpwpY4hCYn7Ys5SGUZRgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 21:25:16
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 17:25:08.969228 2026] [security2:error] [pid 3483:tid 3557] [client 34.134.233.15:31244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lawyerlouisiana.com"] [uri "/.git/config"] [unique_id "aqhmNMkbqd3pBKZws1-BUQAAAUs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-14 21:07:20
(5 hours ago)
34.134.233.15 - - [14/Sep/2026:23:07:20 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ...
show more
34.134.233.15 - - [14/Sep/2026:23:07:20 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 26.0; rv:139.0) Gecko/20100101 Firefox/139.0"
show less
Web App Attack
Anonymous
2026-09-14 20:57:27
(6 hours ago)
34.134.233.15 - - [14/Sep/2026:22:57:22 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 ...
show more
34.134.233.15 - - [14/Sep/2026:22:57:22 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 15_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36 Edg/135.0.0.0"
...
show less
Web App Attack
🇱🇻
garmtech.com
2026-09-14 20:49:05
(6 hours ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 20:42:24
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.134.233.15 (15.233.134.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 16:42:18.503524 2026] [security2:error] [pid 21693:tid 21693] [client 34.134.233.15:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdn-2.socialstudiesforkids.com"] [uri "/.git/config"] [unique_id "aqhcKgWD_dfX-c9LFCq1vgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
YF
2026-09-14 20:37:15
(6 hours ago)
Git config exposure probe
Web App Attack
🇺🇸
MPL
2026-09-14 20:21:55
(6 hours ago)
tcp/443 (20 or more attempts)
Port Scan
Anonymous
2026-09-14 20:18:53
(6 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
🇵🇱
sefinek.net
2026-09-14 20:11:48
(6 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/config | UA: Mozilla/5.0 (Linux; Android 15; Pixel 9) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Mobile Safari/537.36 • Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot