π©πͺ
big-cloud.nl
2026-09-02 17:34:10
(45 minutes ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 14:45:46
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:45:41.101498 2026] [security2:error] [pid 27279:tid 27279] [client 34.24.131.141:48184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luckypupdesigns.com"] [uri "/.git/config"] [unique_id "apg2lQ25ydS4mXYoOqzeNwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-09-02 12:05:27
(6 hours ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 11:39:30
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 07:39:21.945408 2026] [security2:error] [pid 1222:tid 1222] [client 34.24.131.141:38382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luckydawgs.com"] [uri "/.git/config"] [unique_id "apgK6ZeRodp05T0_noST1wAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 06:41:05
(11 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 06:13:09
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:13:03.961747 2026] [security2:error] [pid 29692:tid 29692] [client 34.24.131.141:47550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luciferdirective.com"] [uri "/.git/config"] [unique_id "ape-b3aKy-Y3JWSktPh9LAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-09-02 05:45:34
(12 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-02 05:45 UTC
show less
Hacking
Web App Attack
π«π·
masterguru
2026-09-02 04:40:57
(13 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
π³π±
Site.eu
2026-09-02 04:09:19
(14 hours ago)
Excessive multi-domain requests
Brute-Force
π«π·
Octopuce
2026-09-02 03:41:57
(14 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
πͺπΈ
masterguru
2026-09-02 03:35:55
(14 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
π«π·
phoenix1jl96
2026-09-02 01:12:45
(17 hours ago)
2026/09/02 03:12:44 [error] 3857369#3857369: *5662 open() "/home/user-data/www/lucasmaths.fr/mailer/ ...
show more
2026/09/02 03:12:44 [error] 3857369#3857369: *5662 open() "/home/user-data/www/lucasmaths.fr/mailer/.env" failed (2: No such file or directory), client: 34.24.131.141, server: lucasmaths.fr, request: "GET /mailer/.env HTTP/1.1", host: "lucasmaths.fr"
2026/09/02 03:12:44 [error] 3857369#3857369: *5662 open() "/usr/local/lib/roundcubemail/.env" failed (2: No such file or directory), client: 34.24.131.141, server: lucasmaths.fr, request: "GET /mail/.env HTTP/1.1", host: "lucasmaths.fr"
...
show less
DNS Compromise
DNS Poisoning
DDoS Attack
Ping of Death
Web Spam
Email Spam
Blog Spam
Port Scan
Hacking
Brute-Force
Bad Web Bot
SSH
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-02 01:08:31
(17 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π«π·
masterguru
2026-09-02 01:00:56
(17 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
πΊπΈ
TPI-Abuse
2026-09-02 00:16:30
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.131.141 (141.131.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:16:23.073927 2026] [security2:error] [pid 20118:tid 20118] [client 34.24.131.141:39954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lucasabrahamsen.org"] [uri "/.git/config"] [unique_id "apdq19OsF63HAtLrQLebcgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack