๐ธ๐ช
vaia.cloud
2026-08-28 13:25:02
(4 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:40:56
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:40:49.083856 2026] [security2:error] [pid 11646:tid 11646] [client 34.24.36.13:39190] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.islanublarproperties.thinksite.net"] [uri "/site/.git/config"] [unique_id "apGB0dC-IItSOrMOiHJ9cwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 22:27:51
(19 hours ago)
Web Server Enforcement Violation.
Hacking
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-27 15:44:31
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 14:18:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:18:48.291146 2026] [security2:error] [pid 10819:tid 10819] [client 34.24.36.13:34706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pilates-slings.eu"] [uri "/public/.git/config"] [unique_id "apBHSKq7BipEkZK14xHe9wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:20:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:20:52.206370 2026] [security2:error] [pid 19728:tid 19728] [client 34.24.36.13:41796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "partybussantafe.com"] [uri "/www/.git/config"] [unique_id "apArpLr4m6lsXv23P983hAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-27 09:43:04
(1 day ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐ง๐ท
Peregrine
2026-08-27 09:12:49
(1 day ago)
Fail2Ban Jail: tomcat-404 | Evidence: 34.24.36.13 104.22.56.24 - - [27/Aug/2026:06:12:47 -0300] "GET ...
show more
Fail2Ban Jail: tomcat-404 | Evidence: 34.24.36.13 104.22.56.24 - - [27/Aug/2026:06:12:47 -0300] "GET /htdocs/.git/config HTTP/1.1" 404 414
34.24.36.13 172.71.31.84 - - [27/Aug/2026:06:12:47 -0300] "GET /var/www/.git/config HTTP/1.1" 404 414
34.24.36.13 104.23.245.195 - - [27/Aug/2026:06:12:47 -0300] "GET /html/.git/config HTTP/1.1" 404 414
34.24.36.13 172.71.31.83 - - [27/Aug/2026:06:12:47 -0300] "GET /src/.git/config HTTP/1.1" 404 414
34.24.36.13 104.22.24.154 - - [27/Aug/2026:06:12:47 -0300] "GET /site/.git/config HTTP/1.1" 404 414
34.24.36.13 104.23.245.194 - - [27/Aug/2026:06:12:47 -0300] "GET /public/.git/config HTTP/1.1" 404 414
34.24.36.13 172.71.31.84 - - [27/Aug/2026:06:12:47 -0300] "GET /wordpress/.git/config HTTP/1.1" 404 414
34.24.36.13 172.68.71.141 - - [27/Aug/2026:06:12:47 -0300] "GET /www/.git/config HTTP/1.1" 404 414
34.24.36.13 172.68.71.142 - - [27/Aug/2026:06:12:47 -0300] "GET /backend/.git/config HTTP/1.1" 404 414
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 08:10:46
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
Marco711
2026-08-27 07:57:07
(1 day ago)
port/URL scanning
Port Scan
Web App Attack
๐จ๐ญ
Origon
2026-08-27 04:57:30
(1 day ago)
http-sensitive-files - IP: 34.24.36.13 - time="2026-08-27T06:57:29+02:00" level=info msg="(555f66b4 ...
show more
http-sensitive-files - IP: 34.24.36.13 - time="2026-08-27T06:57:29+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.24.36.13 (US/396982) : 4h ban on Ip 34.24.36.13" module=db
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-27 04:13:56
(1 day ago)
cloudlinux2 fail2ban: 2026-08-27 06:11:07,449 fail2ban.filter [1775]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-27 06:11:07,449 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 45.146.55.205 - 2026-08-27 06:11:06cloudlinux2 fail2ban: 2026-08-27 06:12:00,795 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 34.24.36.13 - 2026-08-27 06:12:00cloudlinux2 fail2ban: 2026-08-27 06:12:00,763 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 34.24.36.13 - 2026-08-27 06:12:00cloudlinux2 fail2ban: 2026-08-27 06:12:00,779 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 34.24.36.13 - 2026-08-27 06:12:00cloudlinux2 fail2ban: 2026-08-27 06:12:00,805 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 34.24.36.13 - 2026-08-27 06:12:00cloudlinux2 fail2ban: 2026-08-27 06:12:00,771 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 34.24.36.13 - 2026-08-27 06:12:00cloudlinux2 fail2ban: 2026-08-27 06:12:00,836 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 34.24.36.13 - 2026-08-27 06:12:00cloudlinu
show less
Web App Attack
๐ฒ๐พ
Rizzy
2026-08-27 03:22:38
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 01:45:01
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 01:05:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.24.36.13 (13.36.24.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:05:33.836450 2026] [security2:error] [pid 23230:tid 23230] [client 34.24.36.13:42758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.artinistanbul.pist.org.tr"] [uri "/www/.git/config"] [unique_id "ao-NXfwh-n8UyhDpuyGBEQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack