๐บ๐ธ
TPI-Abuse
2026-09-02 08:05:00
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:04:56.321599 2026] [security2:error] [pid 14192:tid 14192] [client 34.22.106.34:51890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robertmcatee.com"] [uri "/var/www/.git/config"] [unique_id "apfYqDzkD5YA-9viX_HWQAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-02 06:16:23
(7 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.22.106.34 (KR/South Korea/34.106.22.34.bc.go ...
show more
(mod_security) mod_security (id:949110) triggered by 34.22.106.34 (KR/South Korea/34.106.22.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 06:09:57
(7 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 06:03:20
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:03:15.306558 2026] [security2:error] [pid 10934:tid 10934] [client 34.22.106.34:40620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.intrinsicdiscovery.com"] [uri "/www/.git/config"] [unique_id "ape8I22gJLVKPc32LH2r1QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:46:55
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:46:51.117715 2026] [security2:error] [pid 10525:tid 10525] [client 34.22.106.34:54408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kraftrentals.com"] [uri "/site/.git/config"] [unique_id "ape4SwlkQO44k-7kC5WFAAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 05:40:27
(8 hours ago)
Apache vulnerability scan
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 05:25:12
(8 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.22.106.34 (KR/South Korea/34.106.2 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.22.106.34 (KR/South Korea/34.106.22.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
๐ฌ๐ง
openstrike.co.uk
2026-09-02 05:13:54
(8 hours ago)
12 attacks on VC URLs:
GET /html/.git/config HTTP/1.1
Hacking
๐ณ๐ฑ
SysAdmin Dylan
2026-09-02 04:54:31
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (KR/South Korea/34.106.22.34.bc.go ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (KR/South Korea/34.106.22.34.bc.googleusercontent.com): 10 in the last 3600 secs
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-02 04:49:02
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:48:57.674409 2026] [security2:error] [pid 25417:tid 25417] [client 34.22.106.34:48234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.shelbysmoak.com"] [uri "/wordpress/.git/config"] [unique_id "apequU7-lPV221A-ZFk3xwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-02 03:29:43
(10 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 02:42:43
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:42:37.718698 2026] [security2:error] [pid 22900:tid 22900] [client 34.22.106.34:37562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "diamenty.info"] [uri "/public/.git/config"] [unique_id "apeNHZUtJNB6SAVyWNjc4wAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 01:05:44
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.106.34 (34.106.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 21:05:36.698755 2026] [security2:error] [pid 13570:tid 13570] [client 34.22.106.34:37288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.ronelgas.com"] [uri "/wordpress/.git/config"] [unique_id "apd2YEWJBhDCojYXD_3TggAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-02 00:53:39
(13 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ด
Abuse Buster
2026-09-02 00:19:18
(13 hours ago)
34.22.106.34 - - [02/Sep/2026:02:19:16 +0200] "GET /public/.git/config HTTP/1.1" 444 0 "-" "crusader ...
show more
34.22.106.34 - - [02/Sep/2026:02:19:16 +0200] "GET /public/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
34.22.106.34 - - [02/Sep/2026:02:19:16 +0200] "GET /www/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
...
show less
Web App Attack