Anonymous
2026-09-06 04:25:47
(16 hours ago)
Aggressive web scan
Web App Attack
🇷🇸
Smel
2026-09-06 04:03:03
(17 hours ago)
Unauthorized Probe/Connection, Hack -
Port Scan
Hacking
🇫🇷
Jimbo67
2026-09-06 01:05:48
(19 hours ago)
Cloudflare WAF: 1 hits in 30s | action=block | abuse=suspicious_probe | categories=19 | rule_id=0189 ...
show more
Cloudflare WAF: 1 hits in 30s | action=block | abuse=suspicious_probe | categories=19 | rule_id=0189a8c2c2ab4a60bc709bad14577d18 | URIs=/.git/config | confidence=0.82
show less
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-05 23:07:48
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:07:40.695579 2026] [security2:error] [pid 2873:tid 2873] [client 34.175.149.241:57980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.genevainvestors.com"] [uri "/src/.git/config"] [unique_id "apygvJzYoQwCNGbbT8aTZQAAAHc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 21:30:08
(23 hours ago)
34.175.149.241 - - [05/Sep/2026:23:30:02 +0200] "GET /.git/config HTTP/1.1" 403 157 "-" "crusader-wo ...
show more
34.175.149.241 - - [05/Sep/2026:23:30:02 +0200] "GET /.git/config HTTP/1.1" 403 157 "-" "crusader-worker/1.0"
...
show less
Web App Attack
🇩🇪
paissangroup
2026-09-05 15:34:13
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
Starburst SysOp Team
2026-09-05 11:03:03
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-stl2-14)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:07:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:07:47.299863 2026] [security2:error] [pid 4717:tid 4717] [client 34.175.149.241:44720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.manty.com"] [uri "/site/.git/config"] [unique_id "apsXA9w4tpguucNa7r5K9wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-04 17:48:47
(2 days ago)
Multiple WAF Violations
Web App Attack
🇸🇪
SkyDancer
2026-09-04 10:41:19
(2 days ago)
Multiple login attempts via RDP and/or SSH using wrong credentials. Attack automatically blocked by ...
show more
Multiple login attempts via RDP and/or SSH using wrong credentials. Attack automatically blocked by SkyDancer Ai via interface.
show less
Hacking
Brute-Force
SSH
🇺🇸
TPI-Abuse
2026-09-04 07:47:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:47:22.235822 2026] [security2:error] [pid 11596:tid 11596] [client 34.175.149.241:55872] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clients.kinareemagazine.com"] [uri "/www/.git/config"] [unique_id "app3ihveLeUn5t2UebMdJwAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
SkyDancer
2026-09-04 07:13:54
(2 days ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
🇩🇪
FD-IX
2026-09-04 05:55:53
(2 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:30:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:30:19.283164 2026] [security2:error] [pid 20407:tid 20407] [client 34.175.149.241:58474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.architech.com"] [uri "/public/.git/config"] [unique_id "appXa9DlZpTiHqz1gbRoZAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:54:30
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.149.241 (241.149.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:54:26.220831 2026] [security2:error] [pid 30267:tid 30267] [client 34.175.149.241:44568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mymclife.com"] [uri "/public/.git/config"] [unique_id "appPAjEpNuUhwC9Hzp1q5wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack