Anonymous
2026-09-08 04:17:55
(21 minutes ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 00:36:54
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 20:36:46.260920 2026] [security2:error] [pid 26703:tid 26703] [client 34.50.188.232:37394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.prestige-gem.evelynkay.com"] [uri "/.git/config"] [unique_id "ap9YnuEyTZaOzvxYRpQ_jQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 23:30:54
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:30:48.234114 2026] [security2:error] [pid 4841:tid 4841] [client 34.50.188.232:57360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.prcomputersolutions.com.anthonyanimalclinic.net"] [uri "/.git/config"] [unique_id "ap9JKFNNBHKxtrJgk2UeuAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 23:00:27
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 19:00:22.547755 2026] [security2:error] [pid 6878:tid 6878] [client 34.50.188.232:40072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.powdercoatovens.net.daveweisman.com"] [uri "/.git/config"] [unique_id "ap9CBgFqc4D-mHc3Au2mGwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
cwytech
2026-09-07 22:51:35
(5 hours ago)
Fleet-wide ban from the Ghostfleet 👻. Triggered by scenario: cwy/http-honeypath-sniper-crit.
Bad Web Bot
Web App Attack
🇩🇪
IVski.com
2026-09-07 22:44:35
(5 hours ago)
IVski WAF | Sensitive file probe - looking for exposed .git/config
Hacking
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 22:40:27
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:40:23.034459 2026] [security2:error] [pid 29633:tid 29633] [client 34.50.188.232:42936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.portfolio.rnance.com"] [uri "/.git/config"] [unique_id "ap89V6k5YRcYWcQFj2pxzQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 22:10:09
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:09:58.893377 2026] [security2:error] [pid 22839:tid 22839] [client 34.50.188.232:54270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.porcherllc.internet-brochures.com"] [uri "/.git/config"] [unique_id "ap82NoV-SK4LtlSSyhnUEgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-07 22:05:17
(6 hours ago)
Abuse Detected (56)
Brute-Force
Web App Attack
🇫🇮
mnazibo
2026-09-07 22:00:06
(6 hours ago)
Date: 08/Sep/2026 00:50:09 | Reported IP: 34.50.188.232 mod_security | id: 930130 | US/group.my_doma ...
show more
Date: 08/Sep/2026 00:50:09 | Reported IP: 34.50.188.232 mod_security | id: 930130 | US/group.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /.git/config | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
🇩🇪
pltcldvlpr
2026-09-07 21:45:19
(6 hours ago)
CMS/framework probe: 34.50.188.232 - - [07/Sep/2026:23:45:19 +0200] "GET /.git/config HTTP/1.1" 444 ...
show more
CMS/framework probe: 34.50.188.232 - - [07/Sep/2026:23:45:19 +0200] "GET /.git/config HTTP/1.1" 444 0 "-" "-" asn=396982 org="Google LLC" country=US
...
show less
Web App Attack
🇵🇱
Roper123
2026-09-07 21:13:54
(7 hours ago)
Web app exploits
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 21:08:49
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 17:08:45.618269 2026] [security2:error] [pid 16739:tid 16739] [client 34.50.188.232:38906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.plumduff.microdot.net"] [uri "/.git/config"] [unique_id "ap8n3VIKSpt1sR9kODq5NwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
Bay13
2026-09-07 20:57:56
(7 hours ago)
CrowdSec:custom/http-sensitive-files
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 20:49:19
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.188.232 (232.188.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:49:13.634060 2026] [security2:error] [pid 5605:tid 5709] [client 34.50.188.232:35674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.playerintro.beckmon.com"] [uri "/.git/config"] [unique_id "ap8jST2YA4KZBVkn7lNpewAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack