๐บ๐ธ
TPI-Abuse
2026-06-02 14:49:20
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.48.223.165 (165.223.48.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.48.223.165 (165.223.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 10:49:12.662079 2026] [security2:error] [pid 1107:tid 1107] [client 34.48.223.165:52620] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.motonaonaobookings.hamiltonbookings.com"] [uri "/.git/config"] [unique_id "ah7taM7N61vyS2bmp-w2DwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-02 14:47:32
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
Kreapptivo
2026-06-02 14:40:06
(1 day ago)
[02/Jun/2026:16:40:01 +0200] Web-Request: "GET /.git/config", User-Agent: "-"
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-02 14:36:43
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
nyt
2026-06-02 14:33:56
(1 day ago)
Sensitive File Probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 14:33:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 10:33:16.986456 2026] [security2:error] [pid 8028:tid 8028] [client 34.48.223.165:56056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.moonfamilies.seizetheseason.com"] [uri "/.git/config"] [unique_id "ah7prIiz7-47oI-EhP-PEQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski
2026-06-02 14:23:42
(1 day ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 14:16:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 10:16:08.414311 2026] [security2:error] [pid 21636:tid 21636] [client 34.48.223.165:40022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.momokuwait.gulftelecom.com"] [uri "/.git/config"] [unique_id "ah7lqEbSr1xA_NBQmBVFtQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 14:08:09
(1 day ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 13:59:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:59:32.997212 2026] [security2:error] [pid 17620:tid 17620] [client 34.48.223.165:40742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mobresearchinc.markthwaite.com"] [uri "/.git/config"] [unique_id "ah7hxCTpWBcHTppYRs96lQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 13:41:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.48.223.165 (165.223.48.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:41:03.362951 2026] [security2:error] [pid 24022:tid 24044] [client 34.48.223.165:42596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mmcadornments.meanmouse.com"] [uri "/.git/config"] [unique_id "ah7db9W_2x1uQ7CKycb6hgAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack