๐ฆ๐บ
2000cn.com.au
2026-08-29 03:40:37
(24 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ธ๐ช
vaia.cloud
2026-08-29 00:50:03
(3 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฉ๐ช
LRob
2026-08-28 23:59:22
(4 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /app/.git/config (+11 more) | 2026-08-28 23:59 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 22:55:52
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.99.28 (28.99.151.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.99.28 (28.99.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:55:45.829680 2026] [security2:error] [pid 24591:tid 24591] [client 34.151.99.28:34778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spyasociados.com"] [uri "/public/.git/config"] [unique_id "apIR8VM8WByC4VLugBHWwQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dom4k
2026-08-28 21:19:22
(6 hours ago)
34.151.99.28 - - [28/Aug/2026:21:19:21 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "crusader-worker ...
show more
34.151.99.28 - - [28/Aug/2026:21:19:21 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
...
show less
Web Spam
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-28 21:05:00
(7 hours ago)
Try to access /htdocs/.git/config
Web App Attack
๐ฑ๐น
sobakintech
2026-08-28 19:35:51
(8 hours ago)
Detected by CrowdSec on Traefik reverse proxy: crowdsecurity/http-probing
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 17:25:32
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.99.28 (28.99.151.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.99.28 (28.99.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 13:25:24.444602 2026] [security2:error] [pid 30213:tid 30213] [client 34.151.99.28:49928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cinemasky.michaelprussin.com"] [uri "/wordpress/.git/config"] [unique_id "apHEhAJ040gSiYXm6oA3fQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-28 15:59:35
(12 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 15:26:58
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.99.28 (28.99.151.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.99.28 (28.99.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 11:26:51.470198 2026] [security2:error] [pid 12964:tid 12964] [client 34.151.99.28:48970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "landing.techknowpros.com"] [uri "/backend/.git/config"] [unique_id "apGouzdhsuv2XkyZVeLY_AAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
jekob
2026-08-28 13:52:31
(14 hours ago)
Automated malicious activity detected (5 events)
Hacking
Web App Attack
๐ฉ๐ช
filstal.org
2026-08-28 13:09:59
(14 hours ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
ELYAZ
2026-08-28 12:37:59
(15 hours ago)
(y3) Failed access -byebye- from 34.151.99.28 (AU/Australia/28.99.151.34.bc.googleusercontent.com): ...
show more
(y3) Failed access -byebye- from 34.151.99.28 (AU/Australia/28.99.151.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐ง๐ช
taivas.nl
2026-08-28 04:32:50
(23 hours ago)
Many_bad_calls
Web App Attack
Anonymous
2026-08-27 18:21:39
(1 day ago)
[ssd5.kdns.gr] httpd-config-scan: sites=www.rebello.gr; logs=/var/log/httpd/domains/rebello.gr.log; ...
show more
[ssd5.kdns.gr] httpd-config-scan: sites=www.rebello.gr; logs=/var/log/httpd/domains/rebello.gr.log; samples=/www/.git/config | /html/.git/config | /api/.git/config
show less
Hacking
Web App Attack