๐บ๐ธ
TPI-Abuse
2026-09-01 21:04:55
(5 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.136.13.92 (92.13.136.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.13.92 (92.13.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:04:50.194546 2026] [security2:error] [pid 4475:tid 4475] [client 34.136.13.92:56516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "odinsglobalsolution.com.illumoonatedtarot.com"] [uri "/src/.git/config"] [unique_id "apc98sIfLEKMm1BTY2CtdgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-09-01 20:21:24
(49 minutes ago)
Repeated requests for suspicious nonexistent URLs, for example: /var/www/.git/config (HTTP/1.1 port ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /var/www/.git/config (HTTP/1.1 port 443, user agent: "crusader-worker/1.0")
show less
Web App Attack
๐ซ๐ท
Lino Project
2026-09-01 17:46:13
(3 hours ago)
34.136.13.92 - - [01/Sep/2026:19:46:09 +0200] "GET /.git/config HTTP/1.1" 404 5694 "-" "crusader-wor ...
show more
34.136.13.92 - - [01/Sep/2026:19:46:09 +0200] "GET /.git/config HTTP/1.1" 404 5694 "-" "crusader-worker/1.0"
34.136.13.92 - - [01/Sep/2026:19:46:11 +0200] "GET /.git/config HTTP/1.1" 302 463 "-" "crusader-worker/1.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-09-01 15:24:00
(5 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฉ๐ช
macrob
2026-09-01 13:56:09
(7 hours ago)
2026/09/01 13:56:07 [error] 2521539#2521539: *544587272 access forbidden by rule, client: 34.136.13. ...
show more
2026/09/01 13:56:07 [error] 2521539#2521539: *544587272 access forbidden by rule, client: 34.136.13.92, server: binixo.es, request: "GET /app/.git/config HTTP/1.1", host: "binixo.es"
2026/09/01 13:56:07 [error] 2521539#2521539: *544587273 access forbidden by rule, client: 34.136.13.92, server: binixo.es, request: "GET /.git/config HTTP/1.1", host: "binixo.es"
2026/09/01 13:56:07 [error] 2521539#2521539: *544587274 access forbidden by rule, client: 34.136.13.92, server: binixo.es, request: "GET /src/.git/config HTTP/1.1", host: "binixo.es"
...
show less
Web App Attack
๐ฉ๐ช
Viveronese
2026-09-01 13:45:38
(7 hours ago)
HTTP vulnerability scanning
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 12:04:53
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ง๐พ
lns.bz
2026-09-01 10:00:29
(11 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-01 09:58:23
(11 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-01 09:55:44
(11 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 06:23:48
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.136.13.92 (92.13.136.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.13.92 (92.13.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:23:41.849530 2026] [security2:error] [pid 13255:tid 13255] [client 34.136.13.92:45302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caleb.calebdavison.com"] [uri "/src/.git/config"] [unique_id "apZvbQM1ZCjfRT-LSujaUQAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-09-01 01:47:59
(19 hours ago)
Accessed trap at '/.git/config'
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-31 16:38:22
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-29 23:45:43
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-29 23:45:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.136.13.92 (92.13.136.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.136.13.92 (92.13.136.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:45:39.083267 2026] [security2:error] [pid 31019:tid 31019] [client 34.136.13.92:51154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fibw.com"] [uri "/htdocs/.git/config"] [unique_id "apNvIyQI0-fCgB8TCF1QdgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack