🇩🇪
sigurg
2026-09-06 08:52:05
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-06 05:55:23
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 01:55:18.771197 2026] [security2:error] [pid 3364:tid 3364] [client 34.175.183.210:50042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trasimeno.montepulciano.org"] [uri "/app/.git/config"] [unique_id "ap0ARtMrv8FOTegUV3NkOQAAAIA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 04:29:13
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 00:29:08.064891 2026] [security2:error] [pid 24381:tid 24381] [client 34.175.183.210:44856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.b9k9.com"] [uri "/www/.git/config"] [unique_id "apzsFOIEHtzHVx6oOvKRmQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
BlueWire Hosting
2026-09-06 02:02:23
(12 hours ago)
Aggressive scanning resulting into 404
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-05 22:24:31
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 18:24:27.840759 2026] [security2:error] [pid 4998:tid 4998] [client 34.175.183.210:42196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.hollorancompanies.com"] [uri "/.git/config"] [unique_id "apyWm5yzOp6t1-GbnYceRQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
paissangroup
2026-09-05 20:55:11
(18 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 20:33:44
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.183.210 (210.183.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:33:35.801430 2026] [security2:error] [pid 30630:tid 30633] [client 34.175.183.210:57844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cibernetic.com"] [uri "/backend/.git/config"] [unique_id "apx8n9gZFhsQ-Ns5gJL3tQAAAIE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-05 20:33:08
(18 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇳🇱
spirttm
2026-09-05 11:17:10
(1 day ago)
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /src/.git/config HTTP/1.1" 400 264 "-" "crusade ...
show more
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /src/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /api/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /app/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /var/www/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /backend/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /site/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /htdocs/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /www/.git/config HTTP/1.1" 400 264 "-" "crusader-worker/1.0"
34.175.183.210 - - [05/Sep/2026:11:17:09 +0000] "GET /html/.git/config HTTP/
...
show less
Port Scan
Web App Attack
🇳🇱
Cloud86 B.V.
2026-09-04 05:18:02
(2 days ago)
categories: DDoS Attack
DDoS Attack