🇫🇮
inlink.ltd
2026-08-29 05:00:59
(1 day ago)
dot file probe
Web App Attack
🇨🇦
Anytech
2026-08-29 04:59:07
(1 day ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-29 04:58:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:58:40.215767 2026] [security2:error] [pid 3562:tid 3588] [client 34.146.137.27:58880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mentzclan.aafm.us"] [uri "/app/.git/config"] [unique_id "apJnAFED9AO4Yy052C-A5QAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-08-29 01:29:25
(1 day ago)
Try to access /app/.git/config
Web App Attack
🇸🇪
vaia.cloud
2026-08-28 18:46:17
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 18:14:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:14:41.513793 2026] [security2:error] [pid 9037:tid 9037] [client 34.146.137.27:37356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "demberdatabase.com"] [uri "/backend/.git/config"] [unique_id "apHQEbj34s59vwN6-kZ4LQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Stylottica
2026-08-28 16:58:08
(1 day ago)
PrestaShop Security Module: suspicious probe path detected (/.git)
Web App Attack
🇺🇸
TPI-Abuse
2026-08-28 15:59:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:59:35.777428 2026] [security2:error] [pid 26758:tid 26758] [client 34.146.137.27:50894] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title34.itaxcenter.com"] [uri "/www/.git/config"] [unique_id "apGwZ3y9PUzcreNIreVT9QAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
aranguren.org
2026-08-28 11:34:14
(1 day ago)
34.146.137.27 - - [28/Aug/2026:21:34:13 +1000] "GET /wordpress/.git/config HTTP/1.1" 301 291 "-" "cr ...
show more
34.146.137.27 - - [28/Aug/2026:21:34:13 +1000] "GET /wordpress/.git/config HTTP/1.1" 301 291 "-" "crusader-worker/1.0"
34.146.137.27 - - [28/Aug/2026:21:34:13 +1000] "GET /site/.git/config HTTP/1.1" 301 286 "-" "crusader-worker/1.0"
34.146.137.27 - - [28/Aug/2026:21:34:13 +1000] "GET /public/.git/config HTTP/1.1" 301 288 "-" "crusader-worker/1.0"
...
show less
Web App Attack
🇮🇹
Inartis
2026-08-27 20:29:38
(2 days ago)
34.146.137.27 - - [27/Aug/2026:22:29:37 +0200] "GET /.git/config HTTP/1.1" 404 5156 "-" "crusader-wo ...
show more
34.146.137.27 - - [27/Aug/2026:22:29:37 +0200] "GET /.git/config HTTP/1.1" 404 5156 "-" "crusader-worker/1.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 18:08:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:08:31.538867 2026] [security2:error] [pid 26095:tid 26095] [client 34.146.137.27:50842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "munchiwrapcom.lasertherapyoc.com"] [uri "/wordpress/.git/config"] [unique_id "apB9Hw9ZSncr8-nk589DnQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 15:39:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:39:31.416447 2026] [security2:error] [pid 15323:tid 15323] [client 34.146.137.27:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.plaiatech.com"] [uri "/backend/.git/config"] [unique_id "apBaM04--lNpfXRg2SZIdgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
DEV-DNS
2026-08-27 14:24:44
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
🇺🇸
TPI-Abuse
2026-08-27 14:01:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.146.137.27 (27.137.146.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:01:20.318130 2026] [security2:error] [pid 15297:tid 15297] [client 34.146.137.27:49328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whitelabelcasinoportal.net.crazycoin.net"] [uri "/backend/.git/config"] [unique_id "apBDMOqLw4B6pK06t0DfJQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 13:58:23
(2 days ago)
[27/Aug/2026:23:58:21 +1000] "GET /html/.git/config HTTP/1.1" 301 297 "crusader-worker/1.0"
Hacking
Web App Attack