๐บ๐ธ
TPI-Abuse
2026-09-03 22:50:25
(27 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.178.151.230 (230.151.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.151.230 (230.151.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:50:17.045652 2026] [security2:error] [pid 26223:tid 26223] [client 34.178.151.230:52338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cncservices.ws"] [uri "/www/.git/config"] [unique_id "apn5qZW90aUDVckXsWnhoQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 20:24:39
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.151.230 (230.151.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.151.230 (230.151.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:24:33.258712 2026] [security2:error] [pid 22444:tid 22444] [client 34.178.151.230:39874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sgtpepperonis.jbaydeliveries.com"] [uri "/.git/config"] [unique_id "apnXgXQq8PV_q_TR_XItfwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-09-03 19:53:32
(3 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-09-03 18:24:16
(4 hours ago)
[ThuSep0320:24:11.2525412026][security2:error][pid1212689:tid1213453][client34.178.151.230:0]ModSecu ...
show more
[ThuSep0320:24:11.2525412026][security2:error][pid1212689:tid1213453][client34.178.151.230:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"manishimwe.ch.81-17-25-250.cpanel.site\"][uri\"/public/.git/config\"][unique_id\"apm7SyQPK754NlS359-aYgAAAM0\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
tsZero
2026-09-03 18:21:23
(4 hours ago)
Scan example: path=/www/.git/config status=403
Hacking
๐ฉ๐ช
Melle
2026-09-03 18:17:12
(5 hours ago)
Blocked by CrowdSec | Scenario: crowdsecurity/http-sensitive-files | 34.178.151.230 triggered 5 even ...
show more
Blocked by CrowdSec | Scenario: crowdsecurity/http-sensitive-files | 34.178.151.230 triggered 5 events | Detected: 2026-09-03T18:17:12.184804787Z
show less
Web App Attack
Hacking
๐ซ๐ท
masterguru
2026-09-03 16:23:22
(6 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.178.151.230 (NL/The Netherlands/23 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.178.151.230 (NL/The Netherlands/230.151.178.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
๐ฐ๐ท
eungyeol15
2026-09-03 15:12:34
(8 hours ago)
[daon] Web scan/abuse: 1 events (web_probe). paths: GET /api/.git/config -> 404. sample: 34.178.151. ...
show more
[daon] Web scan/abuse: 1 events (web_probe). paths: GET /api/.git/config -> 404. sample: 34.178.151.230 - - [04/Sep/2026:00:12:34 +0900] "GET /api/.git/config HTTP/1.1" 404 207 "-" "crusader-worker/1.0"
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-03 15:11:32
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.178.151.230 (230.151.178.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.178.151.230 (230.151.178.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:11:26.472528 2026] [security2:error] [pid 27137:tid 27137] [client 34.178.151.230:44860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mroxygen.org"] [uri "/public/.git/config"] [unique_id "apmOHti7BFBjXVrirKWV3QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-03 13:14:19
(10 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-03 09:51:58
(13 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-03 07:48:17
(15 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
debestelapp
2026-09-03 07:45:10
(15 hours ago)
Web App Attack
๐ฌ๐ง
OptimusGO
2026-09-03 06:46:11
(16 hours ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-09-03 07:46:11 UTC
Log evidence:
34.178.151.230 - - [03/Sep/2026:07:46:09 +0100] "GET /public/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
34.178.151.230 - - [03/Sep/2026:07:46:09 +0100] "GET /www/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
34.178.151.230 - - [03/Sep/2026:07:46:09 +0100] "GET /app/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0"
show less
Port Scan
Brute-Force
๐ฉ๐ช
LRob
2026-09-03 06:42:47
(16 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+11 more) | 2026-09-03 06:42 UTC
show less
Hacking
Web App Attack