🇺🇸
TPI-Abuse
2026-09-04 21:41:36
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:41:30.591118 2026] [security2:error] [pid 6704:tid 6704] [client 34.34.222.6:38500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.digitalcarbonbank.com"] [uri "/public/.git/config"] [unique_id "aps7CkK0so2B-SjtvAGf-gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
SCHAPPY
2026-09-04 21:37:52
(3 hours ago)
Malicious activity from IP detected: crowdsecurity/http-sensitive-files.
Web App Attack
Hacking
Anonymous
2026-09-04 21:03:21
(4 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 18:54:23
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:54:16.985805 2026] [security2:error] [pid 1987:tid 1987] [client 34.34.222.6:59920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.scrunchiebuttbikini.com"] [uri "/backend/.git/config"] [unique_id "apsT2IfNqmMziQblvK41sAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
abuseiphack
2026-09-04 17:20:28
(7 hours ago)
Automatic report for brute force attack
Bad Web Bot
🇳🇱
e.fierstra
2026-09-04 13:48:28
(11 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 12:32:12
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:32:04.728365 2026] [security2:error] [pid 2824998:tid 2825103] [client 34.34.222.6:55068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rbarw.com"] [uri "/htdocs/.git/config"] [unique_id "apq6RA1OtXLqWHx1GpHNOwAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:58:30
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:58:25.941963 2026] [security2:error] [pid 11579:tid 11579] [client 34.34.222.6:60432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.readyremotely.com"] [uri "/htdocs/.git/config"] [unique_id "apqyYXsG3qcT_EhQxApQHQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:23:26
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:23:20.959973 2026] [security2:error] [pid 26745:tid 26745] [client 34.34.222.6:38428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flyinganorak.com.abbeygardensllandudno.com"] [uri "/.git/config"] [unique_id "apqqKLsSO22-tdRhC-cl1AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 09:55:07
(15 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 08:15:48
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 04:15:41.721695 2026] [security2:error] [pid 12696:tid 12696] [client 34.34.222.6:42618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "campbellsclan.com"] [uri "/.git/config"] [unique_id "app-LZrhCvcds_l4XZko2AAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-04 07:52:07
(17 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇳🇱
bazter.pro
2026-09-04 03:02:01
(22 hours ago)
34.34.222.6 - - [04/Sep/2026:03:02:00 +0000] "GET /.git/config HTTP/1.1" 404 421 "-" "crusader-worke ...
show more
34.34.222.6 - - [04/Sep/2026:03:02:00 +0000] "GET /.git/config HTTP/1.1" 404 421 "-" "crusader-worker/1.0"
...
show less
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
SSH
🇺🇸
TPI-Abuse
2026-09-04 02:37:01
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.34.222.6 (6.222.34.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 22:36:57.561980 2026] [security2:error] [pid 25677:tid 25677] [client 34.34.222.6:50978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unicomp.us"] [uri "/public/.git/config"] [unique_id "apouyfVjRticor6pi4vyjAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-03 23:41:59
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking