Anonymous
2026-09-04 17:27:19
(2 hours ago)
34.176.113.227 - - [04/Sep/2026:19:27:15 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintos ...
show more
34.176.113.227 - - [04/Sep/2026:19:27:15 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.113.227 - - [04/Sep/2026:19:27:15 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.113.227 - - [04/Sep/2026:19:27:15 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.113.227 - - [04/Sep/2026:19:27:16 +0200] "GET /.git/config HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.176.113.227 - - [04/Sep/2026:19:27:16 +0200] "GET /.env HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.3
...
show less
Bad Web Bot
Web App Attack
🇸🇪
EmK530
2026-09-04 14:35:36
(5 hours ago)
URL flagged by RegEx: /.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 14:24:49
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:24:43.728965 2026] [security2:error] [pid 26557:tid 26614] [client 34.176.113.227:49358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emjayentertainmentdj.com"] [uri "/.git/config"] [unique_id "aprUq1IYldfnp1qG2JeOkwAAAdI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 13:58:20
(6 hours ago)
34.176.113.227 - - [04/Sep/2026:10:58:19 -0300] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 ...
show more
34.176.113.227 - - [04/Sep/2026:10:58:19 -0300] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
Anonymous
2026-09-04 13:41:22
(6 hours ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
🇹🇷
eryilmaz
2026-09-04 13:26:41
(6 hours ago)
Automated attack blocked by eryilmaz WAF/defense engine (level 1, source: auto, path: /phpinfo.php)
Web App Attack
Hacking
🇩🇪
neckaralb-admin.de
2026-09-04 11:18:19
(8 hours ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:40:19
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:40:14.094162 2026] [security2:error] [pid 25202:tid 25202] [client 34.176.113.227:40392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emilybrass.com"] [uri "/.git/config"] [unique_id "apqgDvDQsW0iSfNDSRVTZwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:35:48
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:35:41.274964 2026] [security2:error] [pid 26260:tid 26260] [client 34.176.113.227:47042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emiliofatuzzo.com"] [uri "/.git/config"] [unique_id "apqQ7dGmdueZEtdlAY5GkQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-04 09:34:27
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
🇮🇹
VHosting
2026-09-04 09:10:03
(10 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇧🇪
cmbplf
2026-09-04 08:31:24
(11 hours ago)
6.096 requests with url.path *.env
1.450 requests with url.path *phpinfo.php
313 requests with ur ...
show more
6.096 requests with url.path *.env
1.450 requests with url.path *phpinfo.php
313 requests with url.path *credentials.json
show less
Brute-Force
Bad Web Bot
🇩🇪
grassau.com
2026-09-04 08:27:27
(11 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.176.113.227 (CL/Chile/Santiago Metro ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.176.113.227 (CL/Chile/Santiago Metropolitan/Santiago/227.113.176.34.bc.googleusercontent.com)
show less
SQL Injection
🇳🇱
ConsulHosting
2026-09-04 08:10:51
(11 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 07:23:36
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.176.113.227 (227.113.176.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:23:30.484546 2026] [security2:error] [pid 13475:tid 13475] [client 34.176.113.227:34146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emhelectric.com"] [uri "/.git/config"] [unique_id "appx8tWps9wGpzCnpkPQBgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack