๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-27 19:33:42
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-26 16:19:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 12:19:43.997183 2026] [security2:error] [pid 4881:tid 4881] [client 34.47.236.40:53572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jam-pak.com"] [uri "/.git/config"] [unique_id "arfwny4-DK4Y7ErHMu5obAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:57:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:57:00.254122 2026] [security2:error] [pid 1272:tid 1272] [client 34.47.236.40:54824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jamisongreen.com"] [uri "/.git/config"] [unique_id "arfrTIl1KBbfnhhbR2atsgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:39:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:39:23.179350 2026] [security2:error] [pid 1396:tid 1396] [client 34.47.236.40:36174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jamiesbballpool.com"] [uri "/.git/config"] [unique_id "arfnKzMZcQMVji5o6p-LTAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-09-21 13:50:01
(1 week ago)
env leak on 706.today/public/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐ฉ๐ฐ
HostingGroup
2026-09-21 08:06:53
(1 week ago)
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show more
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 35. First blocked: 2026-09-21.
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 15:45:04
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ฉ๐ช
LRob
2026-09-20 15:29:00
(2 weeks ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+2 more) | 2026-09-20 15:29 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 15:08:51
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 11:08:44.543224 2026] [security2:error] [pid 9007:tid 9007] [client 34.47.236.40:38826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "castedguy.com"] [uri "/.git/config"] [unique_id "aq_2_BNWDc3e243gB8-ExwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-20 14:19:52
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:09:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.236.40 (40.236.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:09:52.655933 2026] [security2:error] [pid 25165:tid 25165] [client 34.47.236.40:38462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "castagnino.com"] [uri "/.git/config"] [unique_id "aq_pMJT80yqwIifeiORRTQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack