🇺🇸
Rip
2026-09-03 23:31:57
(4 hours ago)
403 Errors: Access Forbidden
Brute-Force
🇩🇪
XICTRON
2026-09-03 22:20:04
(5 hours ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 20:16:28
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:16:22.101137 2026] [security2:error] [pid 1591101:tid 1591152] [client 34.175.249.102:41824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seniorspecialistgroup.richardleeweatherman.com"] [uri "/api/.git/config"] [unique_id "apnVlrYiM-HM8dlAnJCiqAAAAhU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 18:16:54
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:16:47.844101 2026] [security2:error] [pid 15955:tid 15955] [client 34.175.249.102:56874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medusakenya.co.ke"] [uri "/.git/config"] [unique_id "apm5j6vwlmtdMO3jwvDuswAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 17:53:09
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 13:53:03.231521 2026] [security2:error] [pid 21630:tid 21630] [client 34.175.249.102:52250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arthuregau.com"] [uri "/.git/config"] [unique_id "apmz_6gQIQM06vaMXTp3fwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 16:18:13
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 12:18:06.257925 2026] [security2:error] [pid 32184:tid 32184] [client 34.175.249.102:57288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fresh-cut.us"] [uri "/app/.git/config"] [unique_id "apmdvossegzLOt7ZvHevCwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-03 16:17:16
(11 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-03 15:16:58
(12 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇳🇱
Savvii
2026-09-03 12:45:28
(15 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 12:33:43
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:33:38.117468 2026] [security2:error] [pid 846:tid 846] [client 34.175.249.102:58838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luckydawgs.com"] [uri "/public/.git/config"] [unique_id "aplpIrbIeTerv81xky0CcQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-03 10:31:24
(17 hours ago)
Multiple WAF Violations
Web App Attack
🇮🇹
VHosting
2026-09-03 09:55:05
(17 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 07:01:08
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.175.249.102 (102.249.175.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 03:01:04.059847 2026] [security2:error] [pid 9706:tid 9706] [client 34.175.249.102:43958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kln.jp"] [uri "/backend/.git/config"] [unique_id "apkbMO3Lt1SyUF5GcRmB4gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 05:23:55
(22 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
Allolatr
2026-09-03 05:21:31
(22 hours ago)
Sep 3 07:21:31 [redacted] j443: ::ffff:34.175.249.102 nx.[redacted].com "GET /www/.git/config HTTP/1 ...
show more
Sep 3 07:21:31 [redacted] j443: ::ffff:34.175.249.102 nx.[redacted].com "GET /www/.git/config HTTP/1.1" 400 146 "-" "crusader-worker/1.0" Sep 3 07:21:31 [redacted] j443: ::ffff:34.175.249.102 nx.[redacted].com "GET /api/.git/config HTTP/1.1" 400 146 "-" "crusader-worker/1.0" Sep 3 07:21:31 [redacted] j443: ::ffff:34.175.249.102 nx.[redacted].com "GET /public/.git/config HTTP/1.1" 400 146 "-" "crusader-worker/1.0"...
show less
Bad Web Bot