๐ฆ๐บ
electronico
2026-09-02 06:17:14
(33 minutes ago)
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /app/.git/config HTTP/1.1" 404 7418 "-" "crusader- ...
show more
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /app/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /api/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /var/www/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /public/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /htdocs/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /src/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /wordpress/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /site/.git/config HTTP/1.1" 404 7418 "-" "crusader-worker/1.0"
34.50.80.37 - - [02/Sep/2026:17:17:13 +1100] "GET /html/.git/config HTTP/1.1" 404 7418
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-09-02 05:45:58
(1 hour ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-02 04:58:33
(1 hour ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 04:51:27
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.50.80.37 (37.80.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.80.37 (37.80.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:51:21.329189 2026] [security2:error] [pid 4571:tid 4571] [client 34.50.80.37:43236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.voterfraud2016.com"] [uri "/www/.git/config"] [unique_id "aperSVZ6CwiokCM-iRn9oAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
stinpriza
2026-09-02 04:33:17
(2 hours ago)
common Web Exploits being scanned
Web App Attack
๐ฉ๐ช
grassau.com
2026-09-02 04:13:35
(2 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.50.80.37 (ID/Indonesia/Jakarta/Jakar ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.50.80.37 (ID/Indonesia/Jakarta/Jakarta/37.80.50.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-02 04:01:18
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.80.37 (37.80.50.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.80.37 (37.80.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:01:13.901728 2026] [security2:error] [pid 32659:tid 32659] [client 34.50.80.37:40882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dougscomputers.com"] [uri "/public/.git/config"] [unique_id "apefiZciDF90xvamrhiMkAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-02 03:42:43
(3 hours ago)
csagent: score 20.4: secrets grab x2, 404 noise floor x2; 1 domain(s) in 1s
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-02 02:31:54
(4 hours ago)
Probing websites for vulnerabilities
Web App Attack
SQL Injection
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 00:54:45
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ท๐ด
iulianh
2026-09-02 00:42:05
(6 hours ago)
80,443
Brute-Force
SSH
๐ฌ๐ง
consul.to
2026-09-02 00:31:16
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฆ๐บ
Klaverstyn
2026-09-01 23:55:58
(6 hours ago)
Cross-vhost secrets/RCE probing campaign
Web App Attack
Hacking
๐ซ๐ฎ
payincog
2026-09-01 22:00:08
(8 hours ago)
Date: Sep 02 00:40:52 2026 EAT | Reported IP: 34.50.80.37 mod_security | id: 930130 949110 | ID/pay. ...
show more
Date: Sep 02 00:40:52 2026 EAT | Reported IP: 34.50.80.37 mod_security | id: 930130 949110 | ID/pay.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score:
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ฉ๐ช
FD-IX
2026-09-01 21:33:36
(9 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack