🇬🇧
consul.to
2026-09-06 19:06:34
(45 minutes ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 18:38:59
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.47.33.202 (202.33.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.33.202 (202.33.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 14:38:55.570205 2026] [security2:error] [pid 21003:tid 21003] [client 34.47.33.202:60712] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redondotile.com"] [uri "/.git/config"] [unique_id "ap2zP22py-OXsDdFQotTaAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-06 18:33:50
(1 hour ago)
Multiple WAF Violations
Web App Attack
🇩🇪
bogdanv
2026-09-06 17:39:39
(2 hours ago)
$f2bV_matches
DDoS Attack
Web Spam
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-06 16:39:03
(3 hours ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-09-06 16:37:16
(3 hours ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
🇺🇸
TPI-Abuse
2026-09-06 15:55:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.33.202 (202.33.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.33.202 (202.33.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 11:55:06.837315 2026] [security2:error] [pid 16582:tid 16582] [client 34.47.33.202:57318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlinechemical.com"] [uri "/.git/config"] [unique_id "ap2M2jErm-q_qeIFMpKA2AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 15:26:24
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.33.202 (202.33.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.33.202 (202.33.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 11:26:16.700101 2026] [security2:error] [pid 4494:tid 4494] [client 34.47.33.202:49204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlandssprinkler.com"] [uri "/.git/config"] [unique_id "ap2GGKc57jNJaGShWew7rgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-06 15:25:03
(4 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-06 15:10:07
(4 hours ago)
| [Normal/Canada] Aggressive IP 34.47.33.202 (~350 hits). Type: DoS Defender- Web server 400 error c ...
show more
| [Normal/Canada] Aggressive IP 34.47.33.202 (~350 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
🇩🇪
Guardian
2026-09-06 14:27:36
(5 hours ago)
Multi abuses [2]: Unauthorized connection attempt / Port scanning (x3), Unauthorized attempt to retr ...
show more
Multi abuses [2]: Unauthorized connection attempt / Port scanning (x3), Unauthorized attempt to retrieve configuration file (x8)
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "GET / HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "POST / HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "POST / HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "POST / HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "GET /.git/config HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "POST / HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:34 +0200] "GET /.env HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35 +0200] "GET /.env.local HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35 +0200] "GET /.env.production HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35 +0200] "GET /.env.staging HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35 +0200] "GET /.env.development HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35 +0200] "GET /.env.test HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35 +0200] "GET /.env.remote HTTP/1.1"
34.47.33.202 [06/Sep/2026:16:27:35
show less
Port Scan
Web App Attack
🇩🇪
mravb
2026-09-06 14:22:25
(5 hours ago)
34.47.33.202 - - [06/Sep/2026:17:22:24 +0300] "GET /.git/config HTTP/1.1" 401 574 "-" "Mozilla/5.0 ( ...
show more
34.47.33.202 - - [06/Sep/2026:17:22:24 +0300] "GET /.git/config HTTP/1.1" 401 574 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
🇨🇦
Sakusen
2026-09-06 14:19:52
(5 hours ago)
Automated web attack: 277 reqs, 267 paths probed, 232 returned 404; probed: 206 .env, 44 .php, 9 .js ...
show more
Automated web attack: 277 reqs, 267 paths probed, 232 returned 404; probed: 206 .env, 44 .php, 9 .json, 4 secret, 2 other, 1 .git, 1 cloud-cred
show less
Hacking
Bad Web Bot
Web App Attack