๐บ๐ธ
TPI-Abuse
2026-09-02 04:34:41
(56 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:34:37.553250 2026] [security2:error] [pid 19301:tid 19301] [client 34.175.134.177:42598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.t9teamsportinggoods.com"] [uri "/app/.git/config"] [unique_id "apenXaeCXvV471vKbc6C-AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 02:30:23
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐บ๐ธ
JustMeHere
2026-09-02 02:18:34
(3 hours ago)
[Tue Sep 01 22:18:28.678759 2026] [security2:error] [pid 1342:tid 1390] [client 34.175.134.177:38422 ...
show more
[Tue Sep 01 22:18:28.678759 2026] [security2:error] [pid 1342:tid 1390] [client 34.175.134.177:38422] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "vpn.yorknation.com"] [uri "/htdocs/.git/config"] [unique_id "apeHdGN-eyWaC7MkSi2nvQAAANQ"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:47:30
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:47:24.472211 2026] [security2:error] [pid 1042501:tid 1042596] [client 34.175.134.177:38086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "georgebavin.richardleeweatherman.com"] [uri "/var/www/.git/config"] [unique_id "apdyHDf6nb4KkW7Qz_jl_gAAAkc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 21:15:34
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฉ๐ช
FD-IX
2026-09-01 18:34:35
(10 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-09-01 14:04:07
(15 hours ago)
34.175.134.177 - - [01/Sep/2026:08:04:06 -0600] "GET /app/.git/config HTTP/1.1" 301 8109 "-" "crusad ...
show more
34.175.134.177 - - [01/Sep/2026:08:04:06 -0600] "GET /app/.git/config HTTP/1.1" 301 8109 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 12:02:34
(17 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
FeG Deutschland
2026-09-01 10:15:08
(19 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-01 10:07:51
(19 hours ago)
[01/Sep/2026:13:07:50 +0300] -- 34.175.134.177 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[01/Sep/2026:13:07:50 +0300] -- 34.175.134.177 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
SwinT
2026-09-01 10:00:07
(19 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 09:24:59
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:24:51.823082 2026] [security2:error] [pid 2032:tid 2032] [client 34.175.134.177:44788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "imagea.net"] [uri "/backend/.git/config"] [unique_id "apaZ48NLx55q2Cc_dBvCVgAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 07:26:10
(22 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:14:38
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.134.177 (177.134.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:14:33.985670 2026] [security2:error] [pid 31120:tid 31202] [client 34.175.134.177:60712] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aspencommission.com"] [uri "/api/.git/config"] [unique_id "apZ7WY1R8R20Zzz2JsUiVQAAAdE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Petros Stefanakis
2026-09-01 06:38:34
(22 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.175.134.177 (ES/Spain/177.134.175.34 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.175.134.177 (ES/Spain/177.134.175.34.bc.googleusercontent.com)
show less
SQL Injection