Anonymous
2026-08-31 14:30:58
(3 hours ago)
CrowdSec ban: crowdsecurity/http-sensitive-files
Port Scan
π«π·
Lunix
2026-08-31 13:33:48
(4 hours ago)
Brute-Force
Web App Attack
π©πͺ
janbro
2026-08-31 12:55:04
(4 hours ago)
Automated attempt to access sensitive configuration files.
Port Scan
Hacking
Web App Attack
π¬π§
consul.to
2026-08-31 09:07:26
(8 hours ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 08:56:05
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:56:00.892985 2026] [security2:error] [pid 12048:tid 12048] [client 34.151.168.96:38798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ahuramazda.com"] [uri "/.git/config"] [unique_id "apVBoGPsmUxpLCr8czBNUQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 08:35:07
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:35:02.015522 2026] [security2:error] [pid 24967:tid 25005] [client 34.151.168.96:49864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ahsdistance.org"] [uri "/.git/config"] [unique_id "apU8tgwkAgYCVIlzyLQQCAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨πΏ
SystemAdmin
2026-08-31 07:51:23
(9 hours ago)
Doing bad things...
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 07:22:16
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 03:22:12.486780 2026] [security2:error] [pid 3599660:tid 3599692] [client 34.151.168.96:43640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ahmedalbanna.com"] [uri "/.git/config"] [unique_id "apUrpNfpmC2XiniCIQdGNwAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 06:48:08
(10 hours ago)
34.151.168.96 - - [31/Aug/2026:08:47:40 +0200] "GET /.git/config HTTP/1.1" 403 604 "-" "Mozilla/5.0 ...
show more
34.151.168.96 - - [31/Aug/2026:08:47:40 +0200] "GET /.git/config HTTP/1.1" 403 604 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.151.168.96 - - [31/Aug/2026:08:47:41 +0200] "GET /.env HTTP/1.1" 403 604 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.151.168.96 - - [31/Aug/2026:08:47:41 +0200] "GET /.env.local HTTP/1.1" 403 604 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.151.168.96 - - [31/Aug/2026:08:47:41 +0200] "GET /.env.production HTTP/1.1" 403 604 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.151.168.96 - - [31/Aug/2026:08:47:41 +0200] "GET /.env.staging HTTP/1.1" 403 604 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.151.168.96 - - [31/Aug/2026:08:47:42 +0200] "
...
show less
DDoS Attack
πΊπΈ
TPI-Abuse
2026-08-31 06:35:21
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:35:13.267526 2026] [security2:error] [pid 4195:tid 4195] [client 34.151.168.96:37900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ahijado.org"] [uri "/.git/config"] [unique_id "apUgoS5bYtjdLZ1rJmY5vwAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 04:41:46
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:41:38.720968 2026] [security2:error] [pid 2768:tid 2768] [client 34.151.168.96:43116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "agworldmissions.org"] [uri "/.git/config"] [unique_id "apUGArBdNyQSlE4hiRqEQgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-31 03:45:07
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.168.96 (96.168.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 23:44:58.312530 2026] [security2:error] [pid 18280:tid 18280] [client 34.151.168.96:53130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aguaflot.aguasolar.com"] [uri "/.git/config"] [unique_id "apT4ugQUel4xcCVeJxecdwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
on-com
2026-08-30 21:09:11
(20 hours ago)
URL scan
Brute-Force
Web App Attack
π³π±
Site.eu
2026-08-30 20:13:25
(21 hours ago)
Excessive multi-domain requests
Brute-Force
π«π·
dynamix
2026-08-30 17:14:56
(1 day ago)
Multiple WAF Violations
Web App Attack