🇫🇷
masterguru
2026-09-05 02:33:45
(12 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.39.162.80 (BR/Brazil/80.162.39.34. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.39.162.80 (BR/Brazil/80.162.39.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
🇳🇱
e.fierstra
2026-09-05 00:44:48
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:49:20
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:49:14.796269 2026] [security2:error] [pid 4876:tid 4876] [client 34.39.162.80:38888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.partybussantafe.com"] [uri "/public/.git/config"] [unique_id "aps82vOy-ws4EkaV-_MEfQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:47:16
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:47:09.337684 2026] [security2:error] [pid 24058:tid 24058] [client 34.39.162.80:50772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dianadelapava.com"] [uri "/wordpress/.git/config"] [unique_id "apsuTaVYq1yPO59FUMVxPQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FD-IX
2026-09-04 15:38:58
(23 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 14:51:27
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-04 14:47:35
(1 day ago)
34.39.162.80 - - [04/Sep/2026:14:47:34 +0000] "GET /src/.git/config HTTP/1.1" 403 4396 "-" "crusader ...
show more
34.39.162.80 - - [04/Sep/2026:14:47:34 +0000] "GET /src/.git/config HTTP/1.1" 403 4396 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-04 11:19:25
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /src/.git/config (+11 more) | 2026-09-04 11:19 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 07:34:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:34:29.255987 2026] [security2:error] [pid 31473:tid 31473] [client 34.39.162.80:54512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bristar-usa.com"] [uri "/api/.git/config"] [unique_id "app0hXB0idDBfNcz2GEkswAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 07:16:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:16:22.521765 2026] [security2:error] [pid 2429:tid 2429] [client 34.39.162.80:58682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "energyworker.us"] [uri "/.git/config"] [unique_id "appwRly82xxSOR9gAa3p3wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 05:10:04
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
pscriptos
2026-09-04 04:38:31
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 04:34:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.39.162.80 (80.162.39.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:34:31.374651 2026] [security2:error] [pid 6112:tid 6112] [client 34.39.162.80:57250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.antech.net"] [uri "/backend/.git/config"] [unique_id "appKV_EvfLWogfg_hW5T-QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack