🇺🇸
TPI-Abuse
2026-09-06 06:56:52
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.149.38 (38.149.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.149.38 (38.149.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 02:56:44.026900 2026] [security2:error] [pid 17665:tid 17676] [client 34.165.149.38:59600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedebusinessconsultant.com"] [uri "/.git/config"] [unique_id "ap0OrJijFSoxIiXpGgzNqAAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Thibault Millant
2026-09-06 06:49:26
(10 hours ago)
2026/09/06 08:49:25 [error] 970#970: *1036407 access forbidden by rule, client: 34.165.149.38, serve ...
show more
2026/09/06 08:49:25 [error] 970#970: *1036407 access forbidden by rule, client: 34.165.149.38, server: certifications.millant.ovh, request: "GET /.git/config HTTP/1.1", host: "certifications.millant.ovh"
2026/09/06 08:49:25 [error] 970#970: *1036407 access forbidden by rule, client: 34.165.149.38, server: certifications.millant.ovh, request: "GET /.env HTTP/1.1", host: "certifications.millant.ovh"
2026/09/06 08:49:25 [error] 970#970: *1036407 access forbidden by rule, client: 34.165.149.38, server: certifications.millant.ovh, request: "GET /.env.local HTTP/1.1", host: "certifications.millant.ovh"
2026/09/06 08:49:25 [error] 970#970: *1036407 access forbidden by rule, client: 34.165.149.38, server: certifications.millant.ovh, request: "GET /.env.production HTTP/1.1", host: "certifications.millant.ovh"
2026/09/06 08:49:25 [error] 970#970: *1036407 access forbidden by rule, client: 34.165.149.38, server: certifications.millant.ovh, request: "GET /.env.staging HTTP/1.1", host: "certificati
...
show less
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-09-06 06:10:58
(11 hours ago)
34.165.149.38 - - [06/Sep/2026:08:10:58 +0200] "GET /.git/config HTTP/1.1" 200 3264 "-" "Mozilla/5.0 ...
show more
34.165.149.38 - - [06/Sep/2026:08:10:58 +0200] "GET /.git/config HTTP/1.1" 200 3264 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
Web App Attack
SSH
🇫🇷
masterguru
2026-09-06 05:50:43
(11 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
Anonymous
2026-09-06 04:50:38
(12 hours ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
Anonymous
2026-09-06 04:44:06
(12 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇫🇷
masterguru
2026-09-06 04:07:30
(13 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
Anonymous
2026-09-06 03:43:45
(13 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
dynamix
2026-09-06 03:38:03
(13 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 03:14:32
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.149.38 (38.149.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.149.38 (38.149.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 23:14:27.327913 2026] [security2:error] [pid 22176:tid 22198] [client 34.165.149.38:42118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ceol.us"] [uri "/.git/config"] [unique_id "apzak_m8e7ZI0TuNKT18CQAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-09-06 03:03:09
(14 hours ago)
Too many 404 requests [BY]
Web App Attack
🇧🇪
cmbplf
2026-09-06 02:59:57
(14 hours ago)
12.098 4xx requests in 1 hour (2w5d19h)
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-06 02:45:21
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.149.38 (38.149.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.149.38 (38.149.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:45:13.953388 2026] [security2:error] [pid 15742:tid 15742] [client 34.165.149.38:51250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "centuryabsinthe.com"] [uri "/.git/config"] [unique_id "apzTuTw_8A2TN4rbT8XqJQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 02:23:11
(15 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-06 02:22:00
(15 hours ago)
Excessive 404/403 errors
Brute-Force