🇳🇱
MyGlobalFlowers
2026-09-06 05:44:52
(18 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-06 05:41:47
(18 hours ago)
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /var/www/.git/config HTTP/1.1" 403 164 "-" "crus ...
show more
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /var/www/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /backend/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /src/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /html/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /site/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /wordpress/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /app/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /public/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.148.132.33 - - [06/Sep/2026:07:41:46 +0200] "GET /www/.git/config HTTP/1.1
...
show less
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-06 02:02:01
(22 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 01:52:22
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:52:15.233736 2026] [security2:error] [pid 1657:tid 1657] [client 34.148.132.33:43746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thn.bz"] [uri "/.git/config"] [unique_id "apzHT1XVCn2t-itJbIQ0vQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
4server
2026-09-06 01:44:31
(22 hours ago)
[SunSep0603:44:27.3207892026][security2:error][pid2280705:tid2280778][client34.148.132.33:0]ModSecur ...
show more
[SunSep0603:44:27.3207892026][security2:error][pid2280705:tid2280778][client34.148.132.33:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"simireinigung.ch.136-243-54-122.cpanel.site\"][uri\"/src/.git/config\"][unique_id\"apzFe-uVNQRXeGHTslv5dgAAAIk\"]
show less
Port Scan
Brute-Force
Web App Attack
🇳🇿
Antinson
2026-09-05 23:27:42
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
🇳🇱
e.fierstra
2026-09-05 22:00:31
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 21:31:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:31:25.198658 2026] [security2:error] [pid 31413:tid 31413] [client 34.148.132.33:60488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "richardlyne.com"] [uri "/site/.git/config"] [unique_id "apyKLXu_2ZoSTX4Aig89RQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
rdpguard.com
2026-09-05 13:50:27
(1 day ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
🇳🇱
Eric
2026-09-05 11:37:14
(1 day ago)
[Sat Sep 05 11:37:13.290758 2026] [security2:error] [pid 3984539:tid 3984539] [client 34.148.132.33: ...
show more
[Sat Sep 05 11:37:13.290758 2026] [security2:error] [pid 3984539:tid 3984539] [client 34.148.132.33:57244] [client 34.148.132.33] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "94-209-38-171.cable.dynamic.v4.ziggo.nl"] [uri "/wordpress/.git/config"] [unique_id "apv-6RyYBESWQ62lu7BrFAAAAA4"]
[Sat Sep 05 11:37:13.300457 2026] [security2:error] [pid 4037704:tid 4037704] [client 34.148.132.33:57310] [client 34.148.132.33] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Ano
...
show less
Hacking
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 23:05:01
(2 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 21:06:58
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 18:46:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:46:07.169243 2026] [security2:error] [pid 16560:tid 16560] [client 34.148.132.33:38108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.winders.name"] [uri "/site/.git/config"] [unique_id "apsR753kKCNtksSdWWftPgAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 16:25:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.132.33 (33.132.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 12:24:58.487968 2026] [security2:error] [pid 28300:tid 28300] [client 34.148.132.33:34248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daveideas.stlouisdave.com"] [uri "/htdocs/.git/config"] [unique_id "aprw2oEdmBgXbgaWtkmcRQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-04 15:56:09
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack