๐ง๐ช
cmbplf
2026-06-15 09:51:13
(3 days ago)
1.556 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐ณ๐ฑ
Savvii
2026-06-15 09:02:45
(3 days ago)
20 attempts against mh-misbehave-ban on kale
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:14:49
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:14:41.488935 2026] [security2:error] [pid 4324:tid 4324] [client 34.162.235.126:33088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rallyegroup.com"] [uri "/.git/config"] [unique_id "ai-0cadGnDn1PAsnQ7-MvgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 04:45:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:45:08.764378 2026] [security2:error] [pid 28651:tid 28651] [client 34.162.235.126:36432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "superbat.info"] [uri "/frontend/.git/config"] [unique_id "ai-DVLWfEqKkDrldc7ueoQAAAF4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 04:08:04
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ฎ
payincog
2026-06-15 02:06:19
(3 days ago)
Date: Jun 15 04:36:00 2026 EAT | Reported IP: 34.162.235.126 mod_security | id: 930130 949110 | US/p ...
show more
Date: Jun 15 04:36:00 2026 EAT | Reported IP: 34.162.235.126 mod_security | id: 930130 949110 | US/pay.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Att
show less
SQL Injection
Brute-Force
Bad Web Bot
๐บ๐ธ
infra-monitor
2026-06-15 01:00:08
(3 days ago)
Automated ban via infra-monitor: mgmt-path-probe, suspicious-probe, crowdsecurity/http-probing, +1 m ...
show more
Automated ban via infra-monitor: mgmt-path-probe, suspicious-probe, crowdsecurity/http-probing, +1 more
show less
Port Scan
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-15 00:49:32
(3 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 23:22:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:22:11.515737 2026] [security2:error] [pid 12053:tid 12053] [client 34.162.235.126:37522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ted.krakowski.net"] [uri "/app/.git/config"] [unique_id "ai83o1i1X3i2Gn7cOulH8AAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-06-14 23:00:46
(3 days ago)
404 errors Vulnerability scan
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-06-14 22:22:20
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 34.162.235.126 (US/United States/126.235.162.34 ...
show more
(mod_security) mod_security (id:949110) triggered by 34.162.235.126 (US/United States/126.235.162.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:21:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:21:53.443542 2026] [security2:error] [pid 22310:tid 22324] [client 34.162.235.126:52968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.paygulf.com"] [uri "/api/.git/config"] [unique_id "ai8pgc6Oz0RydmJK5Nr1-AAAAYA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:56:16
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.162.235.126 (126.235.162.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:56:11.205158 2026] [security2:error] [pid 19518:tid 19518] [client 34.162.235.126:49764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blairsmasterplan.com"] [uri "/src/.git/config"] [unique_id "ai8je4BNbEn__gWRl7EWiwAAAGI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Bots.go.to.hell
2026-06-14 21:44:55
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
debestelapp
2026-06-14 21:10:10
(3 days ago)
Web App Attack