🇺🇸
TPI-Abuse
2026-09-07 16:04:44
(16 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 12:04:38.898660 2026] [security2:error] [pid 5606:tid 5733] [client 34.185.73.236:55810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeflis.com"] [uri "/.git/config"] [unique_id "ap7glo0gfJArdkKpZ3QBIwAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 15:43:51
(36 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 11:43:45.993932 2026] [security2:error] [pid 510422:tid 510451] [client 34.185.73.236:42274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jefftappan.com"] [uri "/.git/config"] [unique_id "ap7bsVXgxeJ-Y-n8u_huFQAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
middelkoopcc
2026-09-07 14:56:01
(1 hour ago)
2026-09-07 16:52:14 GET /.git/config [404] && 2026-09-07 16:52:17 GET /.env [404] && 2026-09-07 16:5 ...
show more
2026-09-07 16:52:14 GET /.git/config [404] && 2026-09-07 16:52:17 GET /.env [404] && 2026-09-07 16:52:48 GET /app/.env [404] && 111 more within 20 minutes
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 14:42:28
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 10:42:21.484159 2026] [security2:error] [pid 18522:tid 18522] [client 34.185.73.236:41744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffreycopeland.com"] [uri "/.git/config"] [unique_id "ap7NTTUV5N1RtHy35OyA6gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 14:05:14
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 10:05:10.052873 2026] [security2:error] [pid 8631:tid 8631] [client 34.185.73.236:33124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jefflowenstein.com"] [uri "/.git/config"] [unique_id "ap7Elj5itbbi6kHjqTY-LgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 13:46:14
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 09:46:11.052402 2026] [security2:error] [pid 4789:tid 4789] [client 34.185.73.236:47572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeffhenry.net"] [uri "/.git/config"] [unique_id "ap7AI5b7IS6gxD_J00ATXAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
abivia
2026-09-07 13:31:34
(2 hours ago)
Abivia WAF trigger: Rule scriptKiddies: Dot file access. uri: /.git/config
Hacking
Anonymous
2026-09-07 08:58:36
(7 hours ago)
[Mon Sep 07 10:58:35.534491 2026] [access_compat:error] [pid 2122647:tid 2122647] [client 34.185.73. ...
show more
[Mon Sep 07 10:58:35.534491 2026] [access_compat:error] [pid 2122647:tid 2122647] [client 34.185.73.236:57798] AH01797: client denied by server configuration: /var/www/html/.git
[Mon Sep 07 10:58:35.875474 2026] [access_compat:error] [pid 2122647:tid 2122647] [client 34.185.73.236:57798] AH01797: client denied by server configuration: /var/www/html/.env
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 08:16:03
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-07 07:34:40
(8 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:02:34
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:02:27.226723 2026] [security2:error] [pid 14650:tid 14650] [client 34.185.73.236:34958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jedaenterprises.com"] [uri "/.git/config"] [unique_id "ap5hg_9iehyOjRlzh0nqawAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-07 06:44:41
(9 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇪
kkw
2026-09-07 06:32:16
(9 hours ago)
[REDACTED] 34.185.73.236 - - [07/Sep/2026:08:32:16 +0200] "GET /.git/config HTTP/1.1" 302 617 "-" "M ...
show more
[REDACTED] 34.185.73.236 - - [07/Sep/2026:08:32:16 +0200] "GET /.git/config HTTP/1.1" 302 617 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 17:01:49
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (236.73.185.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 13:01:43.290538 2026] [security2:error] [pid 10825:tid 10860] [client 34.185.73.236:52646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeterfamilytravel.com"] [uri "/.git/config"] [unique_id "ap2cdy3xiHnlqOK9PwuC4wAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Apache
2026-09-06 16:55:41
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (US/United States/236.73.185.34.b ...
show more
(mod_security) mod_security (id:210492) triggered by 34.185.73.236 (US/United States/236.73.185.34.bc.googleusercontent.com): 5 in the last 300 secs
show less
Brute-Force
Web App Attack