🇺🇸
TPI-Abuse
2026-09-06 19:18:02
(6 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 15:17:56.988903 2026] [security2:error] [pid 18681:tid 18681] [client 34.59.82.183:60854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puckerbikini.com"] [uri "/.git/config"] [unique_id "ap28ZCfqa4p2DjZKwgSbzQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
paulshipley.com.au
2026-09-06 19:09:33
(14 minutes ago)
[Mon Sep 07 05:09:32.694812 2026] [security2:error] [pid 2381] [client 34.59.82.183:34430] [client 3 ...
show more
[Mon Sep 07 05:09:32.694812 2026] [security2:error] [pid 2381] [client 34.59.82.183:34430] [client 34.59.82.183] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "ccideas.com.au"] [uri "/.git/config"] [unique_id "ap26bBXZna4nGA_VNPanQgAAAAk"]
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 18:41:04
(43 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 14:40:58.195279 2026] [security2:error] [pid 16530:tid 16530] [client 34.59.82.183:38848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advmach.com"] [uri "/.git/config"] [unique_id "ap2zup-MSNPLm8kJC-vfxwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Bedios GmbH
2026-09-06 18:40:48
(43 minutes ago)
Login credentials theft attempt
Hacking
🇺🇸
interbiznw.com
2026-09-06 18:30:49
(53 minutes ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
🇮🇩
Burayot
2026-09-06 18:26:45
(57 minutes ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.59.82.183 (US/United States/183. ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.59.82.183 (US/United States/183.82.59.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 18:21:10
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 14:21:04.870249 2026] [security2:error] [pid 1905:tid 1905] [client 34.59.82.183:60726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elianabeam.com"] [uri "/.git/config"] [unique_id "ap2vEPUeSE8acPVSJrpioQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-06 18:20:42
(1 hour ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇧🇪
voormedia
2026-09-06 18:07:11
(1 hour ago)
Accessed trap at '/.git/config'
Web App Attack
Anonymous
2026-09-06 18:01:03
(1 hour ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 18:00:48
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 14:00:44.501054 2026] [security2:error] [pid 17729:tid 17729] [client 34.59.82.183:43376] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "exorex.com"] [uri "/.git/config"] [unique_id "ap2qTBAhMoYWq3QCcZ5BpgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Vegascosmetics
2026-09-06 17:59:11
(1 hour ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
🇨🇿
ddw
2026-09-06 17:54:15
(1 hour ago)
ModSecurity detection - Rules: 930130(Restricted File Access Attempt)
Web App Attack
🇩🇪
Blexyel
2026-09-06 17:52:38
(1 hour ago)
34.59.82.183 - - [06/Sep/2026:19:52:38 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "-" "pingusmc. ...
show more
34.59.82.183 - - [06/Sep/2026:19:52:38 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "-" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 17:40:52
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.59.82.183 (183.82.59.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 13:40:48.472989 2026] [security2:error] [pid 24554:tid 24554] [client 34.59.82.183:44172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwetworld.com"] [uri "/.git/config"] [unique_id "ap2loH1YpFznCx4sDC4FagAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack