๐ฉ๐ช
BlueWire Hosting
2026-09-01 07:39:06
(2 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:05:24
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:05:16.751425 2026] [security2:error] [pid 20623:tid 20623] [client 34.41.147.233:31218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "guavaroad.com"] [uri "/.git/config"] [unique_id "apZ5LJxfzI2YcxIkQumNPAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 02:52:15
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:52:09.491608 2026] [security2:error] [pid 1048:tid 1048] [client 34.41.147.233:47478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ashotofcoffee.com"] [uri "/.git/config"] [unique_id "apY92dMLq-2MSOI80arl5AAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 23:49:44
(10 hours ago)
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 22:42:57
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 18:42:50.120408 2026] [security2:error] [pid 9199:tid 9199] [client 34.41.147.233:5644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kiinlog.com"] [uri "/.git/config"] [unique_id "apYDanzYrCFPNyGrxmSOJAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-31 22:02:59
(12 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-30.
show less
Web App Attack
SSH
Hacking
๐ฆ๐บ
2000cn.com.au
2026-08-31 20:40:19
(13 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 17:39:24
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 13:39:20.796173 2026] [security2:error] [pid 19658:tid 19658] [client 34.41.147.233:26992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thresholddigital.com"] [uri "/.git/config"] [unique_id "apW8SAc4_vNH357mfQpnpQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 16:45:54
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:45:46.996511 2026] [security2:error] [pid 24707:tid 24707] [client 34.41.147.233:55546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "suffolksystems.com"] [uri "/.git/config"] [unique_id "apWvuuh9Ql_lVCqIqlQ3fQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-08-31 16:11:33
(18 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 14:57:09
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:57:01.272608 2026] [security2:error] [pid 9296:tid 9296] [client 34.41.147.233:49768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pianissimo-pp.com"] [uri "/.git/config"] [unique_id "apWWPQ1LQTmwhXN1eRnHXAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 03:00:02
(1 day ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 22:44:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 18:44:08.760030 2026] [security2:error] [pid 11569:tid 11569] [client 34.41.147.233:63498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "danielbrower.com"] [uri "/.git/config"] [unique_id "apSyOIwwszWWc9iYo2n-fwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 20:32:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 16:32:05.150944 2026] [security2:error] [pid 9160:tid 9160] [client 34.41.147.233:16296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "charityholidaycards.com"] [uri "/.git/config"] [unique_id "apSTRa75Rma0wRsVuOn_IAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 17:30:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.41.147.233 (233.147.41.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 13:30:04.796796 2026] [security2:error] [pid 8184:tid 8184] [client 34.41.147.233:22160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "benlbrown.com"] [uri "/.git/config"] [unique_id "apRonGFg255-sfXDLE0xuQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack