🇺🇸
TPI-Abuse
2026-08-30 00:17:57
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 20:17:53.411256 2026] [security2:error] [pid 14791:tid 14791] [client 34.21.68.45:48706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.78cardz.78cardsofthetarot-tarotmancy-tarot-cards-and-tarot-readings.com"] [uri "/site/.git/config"] [unique_id "apN2sS7Q51nQvwhqEzWXjwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 23:14:57
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:14:53.086601 2026] [security2:error] [pid 28917:tid 28917] [client 34.21.68.45:55376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rainwaterconstruction.net"] [uri "/src/.git/config"] [unique_id "apNn7WSRvkJXLmTkuHhwigAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Octopuce
2026-08-28 11:55:59
(2 days ago)
Aggressive web search of vulnerable pages: /api/application.yml /admin/phpinfo.php /app/config/datab ...
show more
Aggressive web search of vulnerable pages: /api/application.yml /admin/phpinfo.php /app/config/database.php /api/v4/phpinfo.php /app/config/mai ...
show less
Web App Attack
🇦🇺
secnicholas
2026-08-28 00:02:53
(2 days ago)
Banned by CrowdSec - scenario: crowdsecurity/http-sensitive-files
Port Scan
Bad Web Bot
Web App Attack
🇮🇹
ciccio diddo
2026-08-27 21:46:20
(2 days ago)
High Burst multiple 40X port:Tcp/80,443
Brute-Force
Web App Attack
🇩🇪
getdk
2026-08-27 20:34:23
(2 days ago)
[27/Aug/2026:20:34:22 +0000] host.domain.tld:80 34.21.68.45 - - "GET /.git/config HTTP/1.1" 403 439 ...
show more
[27/Aug/2026:20:34:22 +0000] host.domain.tld:80 34.21.68.45 - - "GET /.git/config HTTP/1.1" 403 439 "-" "crusader-worker/1.0"
[27/Aug/2026:20:34:22 +0000] host.domain.tld:80 34.21.68.45 - - "GET /app/.git/config HTTP/1.1" 403 439 "-" "crusader-worker/1.0"
show less
Brute-Force
Bad Web Bot
Anonymous
2026-08-27 20:12:14
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted] 34.21.68.45 (US/United States/45.68.21. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.21.68.45 (US/United States/45.68.21.34.bc.googleusercontent.com)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-08-27 18:53:01
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:52:53.043589 2026] [security2:error] [pid 14333:tid 14333] [client 34.21.68.45:38902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sirclive.com.cosentient.com"] [uri "/app/.git/config"] [unique_id "apCHhcZWImycBLJDbcXNRAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 18:19:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 14:19:44.088378 2026] [security2:error] [pid 3270:tid 3270] [client 34.21.68.45:59138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mikeneame.com"] [uri "/app/.git/config"] [unique_id "apB_wANJhzzHCt9BQ_8LwwAAAFs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 16:00:37
(2 days ago)
Blocked by firewall on hugin [9000/tcp] | Rule: UFW | SPT: 49912 | TTL: 57 | LEN: 60 | TOS: 0x00 • R ...
show more
Blocked by firewall on hugin [9000/tcp] | Rule: UFW | SPT: 49912 | TTL: 57 | LEN: 60 | TOS: 0x00 • Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇮🇹
VHosting
2026-08-27 14:25:07
(3 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇩🇪
webanyone
2026-08-27 14:02:02
(3 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 11:58:24
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.21.68.45 (45.68.21.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:58:17.982471 2026] [security2:error] [pid 26868:tid 26868] [client 34.21.68.45:43072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "es.nagareinkpaper.ahijado.org"] [uri "/www/.git/config"] [unique_id "apAmWXmaf8w_qffhcR9r6AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack