๐บ๐ธ
TPI-Abuse
2026-09-21 16:09:13
(40 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:09:08.111459 2026] [security2:error] [pid 19681:tid 19701] [client 34.50.100.111:53492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "windowtailors.com"] [uri "/.git/config"] [unique_id "arFWpMB2oIlJfrJRsQthpgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
sternwart
2026-09-21 15:55:45
(53 minutes ago)
Automatisch erkannt: Zugriff auf /.git/config (3d.alpasana.ch)
Web App Attack
Bad Web Bot
๐ฌ๐ง
consul.to
2026-09-21 14:58:16
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-21 14:45:25
(2 hours ago)
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.50.100.111 - - [21/Sep/2026:16:45:16 +0200] "GET /.git/config HTTP/1.1" 404 7144 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
regishoussin
2026-09-21 13:54:33
(2 hours ago)
Automated web scanning detected by Wazuh (rule 100241): repeated 400/404 errors from mass probing of ...
show more
Automated web scanning detected by Wazuh (rule 100241): repeated 400/404 errors from mass probing of admin/backdoor paths (e.g. wp-login.php, known CMS shell filenames) on an Apache web server, on 2026-09-21 13:54 UTC.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 13:42:09
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 09:42:04.769653 2026] [security2:error] [pid 22535:tid 22535] [client 34.50.100.111:51446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdphotography.us"] [uri "/.git/config"] [unique_id "arE0LNseppRPhgT7c8MsgQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-09-21 13:31:51
(3 hours ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-21 11:56:10
(4 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
xxkodedxx
2026-09-21 11:43:24
(5 hours ago)
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 1ร edge-block in 10 ...
show more
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 1ร edge-block in 10m window.
Origin: ID / AS396982 Google LLC
Active: 11:42:59 UTC
Volume: 1 HTTP req
Probed: /.git/config
Status mix: 444ร1
UA: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
Auto-banned 30d. zorvexus-banner.
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 11:18:41
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 07:18:38.580622 2026] [security2:error] [pid 14204:tid 14245] [client 34.50.100.111:39852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "watchback.net"] [uri "/.git/config"] [unique_id "arESjsK6ewrfRUk0Hk_GVAAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 11:01:23
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 07:01:15.588183 2026] [security2:error] [pid 445:tid 445] [client 34.50.100.111:51480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starrmail.net"] [uri "/.git/config"] [unique_id "arEOe_UptRd2qKAkHOO-LgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 09:51:52
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 05:51:46.239480 2026] [security2:error] [pid 22988:tid 22988] [client 34.50.100.111:57418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dbq.us"] [uri "/.git/config"] [unique_id "arD-MtSBtf4i5mqF8AdtrgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 09:12:14
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 05:12:08.420566 2026] [security2:error] [pid 22819:tid 22819] [client 34.50.100.111:43330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teenybikinigirls.com"] [uri "/.git/config"] [unique_id "arD06K3PPWZudsogbQa6lgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 08:19:44
(8 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 04:19:37.196623 2026] [security2:error] [pid 14392:tid 14392] [client 34.50.100.111:60212] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "wolfkin.org"] [uri "/.git/config"] [unique_id "arDomfmNFgY9o8NTVQELfAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 07:22:10
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.100.111 (111.100.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 03:22:05.089783 2026] [security2:error] [pid 21946:tid 21946] [client 34.50.100.111:45128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "soulybygrace.com"] [uri "/.git/config"] [unique_id "arDbHWvOtRjmm8Rb3IMTcAAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack