Anonymous
2026-09-29 12:07:58
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
Dominik Lysiak
2026-09-29 07:32:32
(1 week ago)
34.177.109.44 - - [29/Sep/2026:09:32:31 +0200] "GET /.git/config HTTP/1.1" 404 179 "-" "Mozilla/5.0 ...
show more
34.177.109.44 - - [29/Sep/2026:09:32:31 +0200] "GET /.git/config HTTP/1.1" 404 179 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.177.109.44 - - [29/Sep/2026:09:32:32 +0200] "GET /.env HTTP/1.1" 404 179 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.177.109.44 - - [29/Sep/2026:09:32:32 +0200] "GET /.env.local HTTP/1.1" 404 179 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ต๐ฑ
Budyn
2026-09-29 05:31:12
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: api.budyn.ovh | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 07:22:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 03:22:17.739354 2026] [security2:error] [pid 21512:tid 21512] [client 34.177.109.44:44002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dev.jazziientertainment.com"] [uri "/.git/config"] [unique_id "aroVqbvwHxsXxyOzftPdowAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
ca
2026-09-27 00:35:54
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
Anonymous
2026-09-25 02:10:08
(1 week ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-25 01:54:37
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 17:31:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 13:31:36.074146 2026] [security2:error] [pid 3209:tid 3209] [client 34.177.109.44:34616] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "buenasfrecuencias.circulodesonido.org"] [uri "/.git/config"] [unique_id "arVeeJf_Vh1vtlJ6Ixq68AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-23 09:46:32
(2 weeks ago)
Automated abuse report (scan_404). Observed GET /info hits=1 at 2026-09-23T09:45:26Z UTC.
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-21 15:59:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:59:39.266317 2026] [security2:error] [pid 9013:tid 9013] [client 34.177.109.44:42504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "app.s1global.net.s1global.net"] [uri "/.git/config"] [unique_id "arFUa2jbX7omB9Gi8tMiCAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Campus France
2026-09-21 05:53:52
(2 weeks ago)
[Mon Sep 21 07:53:51.111531 2026] [php:error] [pid 4189069] [client 34.177.109.44:40144] script '/va ...
show more
[Mon Sep 21 07:53:51.111531 2026] [php:error] [pid 4189069] [client 34.177.109.44:40144] script '/var/www/html/desk.radio-campus.org/desk/www/phpinfo.php' not found or unable to stat
[Mon Sep 21 07:53:51.740531 2026] [php:error] [pid 4189069] [client 34.177.109.44:40144] script '/var/www/html/desk.radio-campus.org/desk/www/php.php' not found or unable to stat
[Mon Sep 21 07:53:51.912889 2026] [php:error] [pid 4189069] [client 34.177.109.44:40144] script '/var/www/html/desk.radio-campus.org/desk/www/i.php' not found or unable to stat
[Mon Sep 21 07:53:52.085561 2026] [php:error] [pid 4189069] [client 34.177.109.44:40144] script '/var/www/html/desk.radio-campus.org/desk/www/pi.php' not found or unable to stat
[Mon Sep 21 07:53:52.257940 2026] [php:error] [pid 4189069] [client 34.177.109.44:40144] script '/var/www/html/desk.radio-campus.org/desk/www/pinfo.php' not found or unable to stat
...
show less
Brute-Force
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 17:50:05
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 17:47:13
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.177.109.44 (44.109.177.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 13:47:05.302452 2026] [security2:error] [pid 29965:tid 29965] [client 34.177.109.44:56474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cucciniello.com"] [uri "/.git/config"] [unique_id "arAcGbrY5mqGLnZ_Ja60pgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack