Anonymous
2026-09-03 13:48:43
(34 minutes ago)
[03/Sep/2026:13:48:42 +0000] host=test.pierrickvalin.com server=test.pierrickvalin.com ip=34.136.109 ...
show more
[03/Sep/2026:13:48:42 +0000] host=test.pierrickvalin.com server=test.pierrickvalin.com ip=34.136.109.173 method=GET req=/site/.git/config uri=/index.php status=404 bytes=2378 rt=0.108 urt=0.108 ref="-" ua="crusader-worker/1.0"
...
show less
Web App Attack
Bad Web Bot
Anonymous
2026-09-03 08:45:12
(5 hours ago)
Bot / seems abusive / Apache connections: 20
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ซ๐ท
โจ
2026-09-03 02:30:14
(11 hours ago)
Domain : bambooalerts.com
Rule : config
2026-09-03 02:28:40 W3SVC481 PLESK72 79.171.39.203 GET /var/ ...
show more
Domain : bambooalerts.com
Rule : config
2026-09-03 02:28:40 W3SVC481 PLESK72 79.171.39.203 GET /var/www/.git/config - 80 - 34.136.109.173 HTTP/1.1 crusader-worker/1.0 - - bambooalerts.co.uk 404 8 0 8973 109 801 - -
show less
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-03 02:11:36
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:11:27.601790 2026] [security2:error] [pid 10760:tid 10760] [client 34.136.109.173:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.wiszen.org"] [uri "/src/.git/config"] [unique_id "apjXT92QAJ3QzMUQkkkMgAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-09-03 01:43:51
(12 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 00:25:13
(13 hours ago)
Web application attack detected.
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 22:00:26
(16 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-01.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
Petros Stefanakis
2026-09-02 14:53:25
(23 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.136.109.173 (US/United States/173.10 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.136.109.173 (US/United States/173.109.136.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
dynamix
2026-09-02 13:44:43
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 13:25:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:24:58.687000 2026] [security2:error] [pid 9368:tid 9368] [client 34.136.109.173:41178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kristywernerauthor.com"] [uri "/public/.git/config"] [unique_id "apgjqjU0WgdiVgioHvBaogAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-02 07:20:02
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-09-02 07:09:37
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:11:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:11:18.165421 2026] [security2:error] [pid 8262:tid 8262] [client 34.136.109.173:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thectegroup.net"] [uri "/www/.git/config"] [unique_id "ape-BjfQXb6-TXUSF3F7ZAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 05:55:07
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 05:54:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.109.173 (173.109.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:54:26.793193 2026] [security2:error] [pid 8384:tid 8384] [client 34.136.109.173:41316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.notforhirellc.com"] [uri "/wordpress/.git/config"] [unique_id "ape6Eh1ytDJUv_pym2Ul0AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack