๐ง๐ช
cmbplf
2026-06-15 06:30:08
(10 hours ago)
3.526 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐ซ๐ฎ
YF
2026-06-15 05:01:03
(11 hours ago)
Git config exposure probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:15:40
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:15:33.842249 2026] [security2:error] [pid 26953:tid 26953] [client 34.22.44.139:34266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightupaustralia.org"] [uri "/public/.git/config"] [unique_id "ai9uVVLihHL4tM8nMIoOrQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-06-15 02:28:42
(14 hours ago)
Scanning for web/db/file exploits on s24.sellwise.io
SQL Injection
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:31:11
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:31:05.612170 2026] [security2:error] [pid 1246:tid 1271] [client 34.22.44.139:37152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "e-dome.ne.jp"] [uri "/public/.git/config"] [unique_id "ai9V2ULT99gf00EIHr0RTgAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-15 01:21:09
(15 hours ago)
20 attempts against mh-misbehave-ban on ec102967
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
AWW-Admin
2026-06-15 01:12:45
(15 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.22.44.139 (US/United States/139.44.2 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.22.44.139 (US/United States/139.44.22.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-15 00:46:01
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:45:53.948426 2026] [security2:error] [pid 31296:tid 31296] [client 34.22.44.139:54602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "workzoap.com.worldchat.global"] [uri "/v3/.git/config"] [unique_id "ai9LQUnFfdnnTfEWd8DJLAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-15 00:17:15
(16 hours ago)
Scanning/Probing (54)
Brute-Force
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-14 23:31:10
(17 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ณ๐ด
Bots.go.to.hell
2026-06-14 23:07:47
(17 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐จ๐ญ
Ribeye375
2026-06-14 22:26:42
(18 hours ago)
HIPS web-exfiltration - Block tcp/0:65535
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:22:31
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:22:27.312185 2026] [security2:error] [pid 25480:tid 25480] [client 34.22.44.139:46902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "leviwalkerportfolio.com"] [uri "/www/.git/config"] [unique_id "ai8po2ZTD-rj8g8MgUV_JgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:10:12
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:10:07.398290 2026] [security2:error] [pid 7360:tid 7360] [client 34.22.44.139:47526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lifeinsmoke.yeejia.net"] [uri "/portal/.git/config"] [unique_id "ai8Yr71fkTKSyGUEmVE2FwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 15:53:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.22.44.139 (139.44.22.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 11:53:18.074041 2026] [security2:error] [pid 3397:tid 3397] [client 34.22.44.139:45444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "301i.com"] [uri "/.git/config"] [unique_id "ai7Obix0BhK4xhz7_aaxiQAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack