๐บ๐ธ
TPI-Abuse
2026-09-03 20:16:05
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:15:59.342892 2026] [security2:error] [pid 17236:tid 17236] [client 34.52.161.127:36724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sergioaurell.com"] [uri "/api/.git/config"] [unique_id "apnVf2HFlJjh8ILMtOhYNAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-09-03 19:54:04
(1 hour ago)
[ThuSep0321:54:02.6102362026][security2:error][pid3353360:tid3353378][client34.52.161.127:0]ModSecur ...
show more
[ThuSep0321:54:02.6102362026][security2:error][pid3353360:tid3353378][client34.52.161.127:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"shaping.ch.136-243-54-122.cpanel.site\"][uri\"/app/.git/config\"][unique_id\"apnQWjdtUC3kRhJ5WU-GWgAAAAk\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-09-03 18:53:23
(2 hours ago)
295 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-03 14:56:28
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 10:56:23.530042 2026] [security2:error] [pid 1255669:tid 1255672] [client 34.52.161.127:60690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "murals.ramona.town"] [uri "/site/.git/config"] [unique_id "apmKl3dBaLGBWsN6XF71SwAAAUE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 13:59:45
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 09:59:41.652418 2026] [security2:error] [pid 23996:tid 23996] [client 34.52.161.127:41662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tigerallenyim.com"] [uri "/app/.git/config"] [unique_id "apl9TZpzmc-shavDSiUk3QAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
factor1
2026-09-03 12:59:28
(8 hours ago)
CrowdSec at apollo Reports Abuse
Web App Attack
Anonymous
2026-09-03 12:46:40
(8 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-03 12:32:29
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:32:21.753247 2026] [security2:error] [pid 4111:tid 4111] [client 34.52.161.127:57976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.anthearodgers.com"] [uri "/src/.git/config"] [unique_id "aplo1a9-KwliE_zwm-K6oAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-03 12:14:42
(9 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-03 12:13:25
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:13:18.136522 2026] [security2:error] [pid 13722:tid 13722] [client 34.52.161.127:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mail-pmg.com"] [uri "/site/.git/config"] [unique_id "aplkXqydNNaV3_qH21b0cwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-03 10:24:33
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-09-03 09:58:45
(11 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 09:47:44
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.52.161.127 (127.161.52.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 05:47:36.544851 2026] [security2:error] [pid 23048:tid 23048] [client 34.52.161.127:59238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.beeswaxnews.com"] [uri "/backend/.git/config"] [unique_id "aplCOJUMu_-voi9BYqg6YwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-03 08:53:26
(12 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
Skyrider
2026-09-03 08:53:06
(12 hours ago)
crowdsecurity/http-sensitive-files
Web App Attack