🇺🇸
TPI-Abuse
2026-09-02 15:19:02
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 11:18:56.920612 2026] [security2:error] [pid 18849:tid 18849] [client 34.186.57.104:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lxr.365soft.top"] [uri "/www/.git/config"] [unique_id "apg-YAZSd6VfiqrfBU-AZAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-02 15:00:05
(1 hour ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 12:21:03
(4 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210730) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:20:58.338293 2026] [security2:error] [pid 2456:tid 2456] [client 34.186.57.104:46370] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||blog.tulsatvmemories.com|F|2"] [data ".log"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "blog.tulsatvmemories.com"] [uri "/access.log"] [unique_id "apgUquLzbSJZoRy6RCxwmQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 10:18:18
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:18:10.643144 2026] [security2:error] [pid 15286:tid 15286] [client 34.186.57.104:58144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sweetbailey.com"] [uri "/public/.git/config"] [unique_id "apf34jJ05pws6yVWceWTZwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-02 07:15:14
(9 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
🇬🇧
consul.to
2026-09-02 07:03:40
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-02 05:42:56
(10 hours ago)
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/var/www/.git/config | /site ...
show more
[da.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/var/www/.git/config | /site/.git/config | /backend/.git/config
show less
Hacking
Web App Attack
🇫🇷
dynamix
2026-09-02 05:42:01
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 05:40:58
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:40:53.841258 2026] [security2:error] [pid 20027:tid 20027] [client 34.186.57.104:44768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.whitecranemanagement.com"] [uri "/www/.git/config"] [unique_id "ape25Us76rJtzmdGmrXfbgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-02 05:22:28
(11 hours ago)
Restricted File Access Attempt. Matched phrase "/.git/" at REQUEST_FILENAME. (930130-131)
Hacking
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-02 05:05:28
(11 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
4server
2026-09-02 00:43:37
(15 hours ago)
[WedSep0202:43:31.1204022026][security2:error][pid711945:tid712034][client34.186.57.104:0]ModSecurit ...
show more
[WedSep0202:43:31.1204022026][security2:error][pid711945:tid712034][client34.186.57.104:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"glass-container.com\"][uri\"/htdocs/.git/config\"][unique_id\"apdxM-kaFWRPVudGHp2n1QAAAMM\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 00:13:52
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:13:43.509215 2026] [security2:error] [pid 7647:tid 7647] [client 34.186.57.104:43606] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "genescleaners.com"] [uri "/wordpress/.git/config"] [unique_id "apdqN0s4eTFIumbae3e1DgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 18:56:24
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:56:20.487832 2026] [security2:error] [pid 26728:tid 26808] [client 34.186.57.104:46042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newyorklifecoach.com"] [uri "/htdocs/.git/config"] [unique_id "apcf1MC5JK7Opd91gNA8tAAAAYU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 18:31:27
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.186.57.104 (104.57.186.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:31:20.024038 2026] [security2:error] [pid 11371:tid 11371] [client 34.186.57.104:41768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nationalenq.com"] [uri "/app/.git/config"] [unique_id "apcZ-Jqr8v7AV15zvdteqgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack