Anonymous
2026-10-05 01:16:36
(7 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-05 00:58:22
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 20:58:18.523366 2026] [security2:error] [pid 5134:tid 5134] [client 34.48.138.97:37200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redondotile.com"] [uri "/.git/config"] [unique_id "asL2Kv-2eSW1EtNLvgxM3wAAAF0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-10-05 00:51:23
(7 hours ago)
Multiple WAF Violations
Web App Attack
πΈπͺ
vaia.cloud
2026-10-05 00:30:02
(7 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
π³π±
Alt255
2026-10-04 23:50:54
(8 hours ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.48.138.97 - - [05/Oct/2026:01:50:33 +0200] "GET /.git/config HTTP/1.1" 404 1453 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-10-04 22:10:03
(10 hours ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-10-04 22:07:41
(10 hours ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
πΊπΈ
TPI-Abuse
2026-10-04 21:45:33
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:45:27.725063 2026] [security2:error] [pid 28468:tid 28468] [client 34.48.138.97:50216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlitephotos.com"] [uri "/.git/config"] [unique_id "asLI9_JJMghJoaDZO6sMjwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 21:15:15
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:14:58.811510 2026] [security2:error] [pid 20519:tid 20519] [client 34.48.138.97:38888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlinechemical.com"] [uri "/.git/config"] [unique_id "asLB0uTZh8GavB8gemgptwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
altenglaner
2026-10-04 21:05:25
(11 hours ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 20:39:12
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:39:04.759388 2026] [security2:error] [pid 1234:tid 1234] [client 34.48.138.97:49768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redlandssprinkler.com"] [uri "/.git/config"] [unique_id "asK5aASWXCKZalOmamd1jAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
mravb
2026-10-04 19:16:10
(13 hours ago)
34.48.138.97 - - [04/Oct/2026:22:16:10 +0300] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 ( ...
show more
34.48.138.97 - - [04/Oct/2026:22:16:10 +0300] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
π³π±
Site.eu
2026-09-21 10:24:01
(1 week ago)
Excessive 404/403 errors
Brute-Force
πΈπͺ
vaia.cloud
2026-09-21 10:05:03
(1 week ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-21 09:57:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.138.97 (97.138.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 05:57:09.443289 2026] [security2:error] [pid 20947:tid 20947] [client 34.48.138.97:41572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seizetheseason.com"] [uri "/.git/config"] [unique_id "arD_dTLiQmJvL4YUPOs_wgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack