🇺🇸
TPI-Abuse
2026-08-29 21:58:50
(38 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 17:58:45.964931 2026] [security2:error] [pid 30388:tid 30388] [client 34.152.48.45:50702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mapleleaf-marketing.com"] [uri "/public/.git/config"] [unique_id "apNWFUBtI16pFAXGV_hipQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
clapper
2026-08-27 21:47:54
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 34.152.48.45 (CA/Canada/45.48.152.34.bc.googleu ...
show more
(mod_security) mod_security (id:949110) triggered by 34.152.48.45 (CA/Canada/45.48.152.34.bc.googleusercontent.com): 3 in the last 3600 secs; ID: LUC
show less
Brute-Force
Bad Web Bot
🇧🇾
lns.bz
2026-08-27 19:37:46
(2 days ago)
Too many 404 requests [BY]
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 18:35:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:34:59.793471 2026] [security2:error] [pid 25751:tid 25751] [client 34.152.48.45:45324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "friendlyfarmforfun.com"] [uri "/www/.git/config"] [unique_id "apCDU_IRkhWuQ5xyoUeaVgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 16:19:35
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:19:28.694435 2026] [security2:error] [pid 23991:tid 23991] [client 34.152.48.45:47124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "app.oxfordgliding.com"] [uri "/www/.git/config"] [unique_id "apBjkIOrpxYT-mCIGKK_FwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 13:23:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:23:33.456650 2026] [security2:error] [pid 15587:tid 15587] [client 34.152.48.45:39942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kleens-uk.com"] [uri "/site/.git/config"] [unique_id "apA6VTUldLHmncgMiJX_RwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 13:00:03
(2 days ago)
suspicious request in access.log
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 12:23:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:23:45.783096 2026] [security2:error] [pid 29447:tid 29447] [client 34.152.48.45:49318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.trawlers.jbaydeliveries.com"] [uri "/.git/config"] [unique_id "apAsUa0Ium3cwUlSmhBvJQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
YF
2026-08-27 12:00:13
(2 days ago)
Git config exposure probe
Web App Attack
🇧🇪
boxed-it
2026-08-27 11:37:25
(2 days ago)
GET /.git/config (Tarpitted for 2m12s, wasted 7.85kB)
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 09:27:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:27:41.605614 2026] [security2:error] [pid 6401:tid 6401] [client 34.152.48.45:55714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "apfarrell.com"] [uri "/site/.git/config"] [unique_id "apADDXPHv92w8Geb5iv-BwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-08-27 05:00:05
(2 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇩🇪
SCHAPPY
2026-08-27 04:47:06
(2 days ago)
Malicious activity from IP detected: crowdsecurity/http-sensitive-files.
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-27 03:53:37
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.152.48.45 (45.48.152.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:53:30.799351 2026] [security2:error] [pid 8855:tid 8855] [client 34.152.48.45:42904] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "tribalgamingtech.net"] [uri "/.git/config"] [unique_id "ao-0uv9Z6Z-4ah64S7_KzgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-08-27 03:30:37
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking