πΊπΈ
TPI-Abuse
2026-09-16 02:17:52
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 22:17:46.106014 2026] [security2:error] [pid 16058:tid 16058] [client 34.47.25.80:40704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "purplebikinis.com"] [uri "/.git/config"] [unique_id "aqn8Sn6BQXUoCEQQso1NfgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-16 02:04:35
(5 hours ago)
Excessive multi-domain requests
Brute-Force
π³π±
WeCloudit-Anti-Abuse
2026-09-16 02:04:15
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π³π±
Alt255
2026-09-16 01:45:19
(5 hours ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.47.25.80 - - \[16/Sep/2026:03:45:10 +0200\] "GET /.git/config HTTP/1.1" 301 488 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
π·πΊ
DZBOT
2026-09-16 01:18:14
(6 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
πΊπΈ
IndigoRidge
2026-09-16 00:25:55
(7 hours ago)
[15/Sep/2026:20:25:54.109138 --0400] aqniEtP-pBl5Y6PeBDD0EAAAAM0 34.47.25.80 36794 205.233.18.17 708 ...
show more
[15/Sep/2026:20:25:54.109138 --0400] aqniEtP-pBl5Y6PeBDD0EAAAAM0 34.47.25.80 36794 205.233.18.17 7081
[15/Sep/2026:20:25:54.953796 --0400] aqniEmZIL3gdbWuOAk1u9wAAAE0 34.47.25.80 36832 205.233.18.17 7081
[15/Sep/2026:20:25:55.007752 --0400] aqniE9P-pBl5Y6PeBDD0EQAAANI 34.47.25.80 36838 205.233.18.17 7081
[15/Sep/2026:20:25:55.056798 --0400] aqniExsuSU15zzYwQBLESQAAAY0 34.47.25.80 36852 205.233.18.17 7081
[15/Sep/2026:20:25:55.118489 --0400] aqniE9P-pBl5Y6PeBDD0EgAAAMI 34.47.25.80 36858 205.233.18.17 7081
...
show less
Hacking
πΊπ¦
URAN Publishing Service
2026-09-15 23:59:53
(7 hours ago)
[16/Sep/2026:02:59:52 +0300] -- 34.47.25.80 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/c ...
show more
[16/Sep/2026:02:59:52 +0300] -- 34.47.25.80 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 21:46:56
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:46:50.242690 2026] [security2:error] [pid 8117:tid 8117] [client 34.47.25.80:57564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "purelywhimsical.com"] [uri "/.git/config"] [unique_id "aqm8ymaYFaPPx4Nu73nSXAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 20:34:07
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:33:59.874955 2026] [security2:error] [pid 15616:tid 15616] [client 34.47.25.80:58990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puregoldmorgans.com"] [uri "/.git/config"] [unique_id "aqmrtznBuNFAWYo_YK8IIQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 19:37:43
(11 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
π©πͺ
big-cloud.nl
2026-09-15 19:20:18
(12 hours ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-15 19:09:02
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.25.80 (80.25.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:08:58.954719 2026] [security2:error] [pid 9018:tid 9018] [client 34.47.25.80:59110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "purebinary.com"] [uri "/.git/config"] [unique_id "aqmXykTp8yQD1HYMry8V9gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-15 18:38:56
(12 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
π³π±
e.fierstra
2026-09-15 16:43:58
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-15 16:34:51
(15 hours ago)
Excessive 404/403 errors
Brute-Force