๐ธ๐ช
vaia.cloud
2026-09-16 18:55:03
(10 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
Anonymous
2026-09-16 18:48:20
(10 hours ago)
Flagged as abuse by IisGuard automated detection (tier L5, score 90/100). Reasons: Reputation=1, Bad ...
show more
Flagged as abuse by IisGuard automated detection (tier L5, score 90/100). Reasons: Reputation=1, BadPath=25, Diversity=17,2, CanaryOverride=90.
show less
Web App Attack
Bad Web Bot
๐ฌ๐ง
consul.to
2026-09-16 18:34:46
(10 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 18:09:32
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 14:09:25.041019 2026] [security2:error] [pid 22167:tid 22176] [client 34.47.98.164:36322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "proracersecrets.com"] [uri "/.git/config"] [unique_id "aqrbVa7xoKG3pOUiRxvjIQAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
mravb
2026-09-16 16:49:45
(12 hours ago)
34.47.98.164 - - [16/Sep/2026:19:49:44 +0300] "GET /.env HTTP/1.1" 404 2320 "-" "Mozilla/5.0 (Macint ...
show more
34.47.98.164 - - [16/Sep/2026:19:49:44 +0300] "GET /.env HTTP/1.1" 404 2320 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 16:28:53
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 12:28:47.088014 2026] [security2:error] [pid 20235:tid 20235] [client 34.47.98.164:60566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "proplanarchitects.com"] [uri "/.git/config"] [unique_id "aqrDvwdKsN20Luqd8SuvCwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 16:03:47
(12 hours ago)
(mod_security) mod_security (id:210730) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210730) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 12:03:40.444684 2026] [security2:error] [pid 12663:tid 12663] [client 34.47.98.164:37836] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||propertysubscription.com|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "propertysubscription.com"] [uri "/.env.bak"] [unique_id "aqq93AYdT2NC0Viak-_9jgAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:41:39
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:41:35.041369 2026] [security2:error] [pid 24912:tid 24912] [client 34.47.98.164:56462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "propertygalleria.com"] [uri "/.git/config"] [unique_id "aqq4rxGmMauq5kQixBObqAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:52:32
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:52:24.787837 2026] [security2:error] [pid 19316:tid 19380] [client 34.47.98.164:56892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "property-management-companies-chicago.com"] [uri "/.git/config"] [unique_id "aqqtKO4eFzXDJMT3MW39FwAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 13:45:26
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.47.98.164 (164.98.47.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:45:20.549277 2026] [security2:error] [pid 27907:tid 27907] [client 34.47.98.164:57422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "proof.bonefrog.com"] [uri "/.git/config"] [unique_id "aqqdcBQH4gHmyE6c9fhhUgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 13:35:02
(15 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-16 13:08:40
(15 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฉ๐ช
filstal.org
2026-09-15 15:50:31
(1 day ago)
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels an ...
show more
Web reconnaissance detected: automated probing for sensitive files, backup archives, admin panels and known vulnerability paths.
show less
Hacking
Brute-Force
Web App Attack
๐ณ๐ฑ
r4fo.com
2026-09-15 15:17:03
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/appsec-vpatch
Web App Attack