๐ต๐ฑ
sigurg
2026-09-18 22:15:17
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
LRob
2026-09-18 21:03:26
(6 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-18 21:03 UTC
show less
Hacking
Web App Attack
Anonymous
2026-09-18 20:12:53
(7 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 19:39:30
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 15:39:25.560418 2026] [security2:error] [pid 31586:tid 31586] [client 34.148.41.157:38336] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aavondalervstorage.com"] [uri "/.git/config"] [unique_id "aq2TbVNHK3lNP3UYK_UBtAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 16:46:29
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 12:46:25.109672 2026] [security2:error] [pid 53294:tid 53294] [client 34.148.41.157:37820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aarts.com"] [uri "/.git/config"] [unique_id "aq1q4T97zBf1qtzEgia_JgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-18 16:05:19
(11 hours ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
abenage
2026-09-18 14:07:38
(13 hours ago)
34.148.41.157 - - [18/Sep/2026:08:07:37 -0600] "GET /phpinfo.php HTTP/1.1" 404 564 "-" "Mozilla/5.0 ...
show more
34.148.41.157 - - [18/Sep/2026:08:07:37 -0600] "GET /phpinfo.php HTTP/1.1" 404 564 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 13:20:09
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 09:20:06.022872 2026] [security2:error] [pid 8042:tid 8042] [client 34.148.41.157:58770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aarentes.com"] [uri "/.git/config"] [unique_id "aq06hlX9rNzrYugaGQMV9QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-18 13:07:54
(14 hours ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Savvii
2026-09-18 13:03:43
(14 hours ago)
20 attempts against mh-misbehave-ban on onion
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 12:57:26
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 08:57:20.654323 2026] [security2:error] [pid 6739:tid 6739] [client 34.148.41.157:47790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aarce.me"] [uri "/.git/config"] [unique_id "aq01MLtrvt79NLxN1te1bwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
McClay
2026-09-18 11:46:15
(15 hours ago)
Illegal access attempt:34.148.41.157 - - [18/Sep/2026:13:46:15 +0200] "GET /.git/config HTTP/1.1" 40 ...
show more
Illegal access attempt:34.148.41.157 - - [18/Sep/2026:13:46:15 +0200] "GET /.git/config HTTP/1.1" 404 1072 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-18 11:01:53
(16 hours ago)
20 attempts against mh_ha-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 10:53:41
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.148.41.157 (157.41.148.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 06:53:36.746628 2026] [security2:error] [pid 11873:tid 11873] [client 34.148.41.157:33010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aantariaconstructions.com"] [uri "/.git/config"] [unique_id "aq0YMMppcYYagTW7x8g1_QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-18 10:38:09
(16 hours ago)
Scanning for web/db/file exploits on aanmelden.gabijdebrandweer.nl
SQL Injection
Bad Web Bot
Web App Attack