🇺🇸
TPI-Abuse
2026-09-06 01:53:56
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:53:48.754012 2026] [security2:error] [pid 2201:tid 2201] [client 34.40.90.60:38788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tileytrails.com"] [uri "/backend/.git/config"] [unique_id "apzHrMKmXiD4PinpR4611AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-05 23:13:46
(5 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-05 22:02:48
(6 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-04.
show less
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-05 20:59:32
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:59:26.698945 2026] [security2:error] [pid 3151:tid 3151] [client 34.40.90.60:52368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bigheartskitchen.com"] [uri "/.git/config"] [unique_id "apyCrgvTCFn_8m2K-QToDgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Lino Project
2026-09-05 13:31:36
(15 hours ago)
34.40.90.60 - - [05/Sep/2026:15:31:31 +0200] "GET /.git/config HTTP/1.1" 404 5694 "-" "crusader-work ...
show more
34.40.90.60 - - [05/Sep/2026:15:31:31 +0200] "GET /.git/config HTTP/1.1" 404 5694 "-" "crusader-worker/1.0"
34.40.90.60 - - [05/Sep/2026:15:31:34 +0200] "GET /.git/config HTTP/1.1" 302 463 "-" "crusader-worker/1.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-09-05 13:20:04
(15 hours ago)
Too many 404 requests [BY]
Web App Attack
🇻🇳
trung.fun
2026-09-05 07:50:39
(21 hours ago)
DDoS, Hack, Brute Force, Web Attack
...
DDoS Attack
Web Spam
Hacking
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 01:53:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:53:20.704141 2026] [security2:error] [pid 30420:tid 30420] [client 34.40.90.60:44968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "joescherzi.com"] [uri "/www/.git/config"] [unique_id "apt2EGejZRdutv1MmWjMNgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 01:25:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 21:25:08.245883 2026] [security2:error] [pid 15679:tid 15679] [client 34.40.90.60:34306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "leewis.com"] [uri "/public/.git/config"] [unique_id "aptvdP5BResdOSNQcxTrMwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 22:51:59
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 18:51:54.381851 2026] [security2:error] [pid 4240:tid 4240] [client 34.40.90.60:34204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rdu.us"] [uri "/wordpress/.git/config"] [unique_id "aptLigQqQdJelXtJ7Uq5zAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
SCHAPPY
2026-09-04 22:00:50
(1 day ago)
Brute-force attack to identify web exploits
Brute-Force
Web App Attack
🇩🇪
itsolon
2026-09-04 21:36:52
(1 day ago)
[04/Sep/2026:23:36:52 +0200] 17885578129.996082 34.40.90.60 53300 217.154.7.177 80
[04/Sep/2026:23:3 ...
show more
[04/Sep/2026:23:36:52 +0200] 17885578129.996082 34.40.90.60 53300 217.154.7.177 80
[04/Sep/2026:23:36:52 +0200] 17885578120.540543 34.40.90.60 53312 217.154.7.177 80
[04/Sep/2026:23:36:52 +0200] 178855781267.011792 34.40.90.60 53278 217.154.7.177 80
[04/Sep/2026:23:36:52 +0200] 178855781224.675171 34.40.90.60 53328 217.154.7.177 80
[04/Sep/2026:23:36:52 +0200] 178855781245.494850 34.40.90.60 53286 217.154.7.177 80
...
show less
Port Scan
Hacking
Brute-Force
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 18:56:43
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 18:49:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:49:23.896133 2026] [security2:error] [pid 28929:tid 28929] [client 34.40.90.60:58784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.jbrodriguez.com"] [uri "/public/.git/config"] [unique_id "apsSsxu6Ks5t3smnU0xJhwAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 13:45:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.90.60 (60.90.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:45:00.391620 2026] [security2:error] [pid 5754:tid 5754] [client 34.40.90.60:40176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bernard.gonzalez.com"] [uri "/public/.git/config"] [unique_id "aprLXNab33gDdraqJNxA3gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack