🇩🇪
paissangroup
2026-09-04 10:25:52
(28 minutes ago)
Multiple WAF Violations
Web App Attack
🇩🇪
on-com
2026-09-04 09:54:33
(1 hour ago)
URL scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 09:09:09
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 05:09:04.096590 2026] [security2:error] [pid 6592:tid 6592] [client 34.60.163.72:60364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gibraltar-boat-registration.com"] [uri "/.git/config"] [unique_id "apqKsPhc3X0Ud9hjTiRe-QAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Blexyel
2026-09-04 08:13:17
(2 hours ago)
34.60.163.72 - - [04/Sep/2026:10:13:17 +0200] "GET /.git/config HTTP/1.1" 404 577 "-" "Mozilla/5.0 ( ...
show more
34.60.163.72 - - [04/Sep/2026:10:13:17 +0200] "GET /.git/config HTTP/1.1" 404 577 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:17:47
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:17:39.886711 2026] [security2:error] [pid 32111:tid 32111] [client 34.60.163.72:40204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fishleadership.org"] [uri "/.git/config"] [unique_id "appUczdsQ41_fCiazdY0iQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
openstrike.co.uk
2026-09-04 05:13:35
(5 hours ago)
3 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
🇧🇪
cmbplf
2026-09-04 04:39:11
(6 hours ago)
411 requests with url.path */.git/config
Brute-Force
Bad Web Bot
🇸🇪
SkyDancer
2026-09-04 03:43:26
(7 hours ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
🇺🇸
wbsouza
2026-09-04 03:36:20
(7 hours ago)
CrowdSec: infra/bad-path-probe — automated firewall drops on self-hosted IDS sensor
Hacking
🇺🇸
TPI-Abuse
2026-09-04 03:05:33
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 23:05:26.902237 2026] [security2:error] [pid 20168:tid 20168] [client 34.60.163.72:9632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ehrlichfamily.com"] [uri "/.git/config"] [unique_id "apo1dtvPkNoc5g1i0f2rwgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 02:26:37
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 22:26:34.029883 2026] [security2:error] [pid 20488:tid 20488] [client 34.60.163.72:37348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "form-a-tool.com"] [uri "/.git/config"] [unique_id "aposWsWtcjFrVB3OwCarpAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 01:27:20
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.60.163.72 (72.163.60.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:27:15.635576 2026] [security2:error] [pid 10147:tid 10147] [client 34.60.163.72:17078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fluffmoo.org"] [uri "/.git/config"] [unique_id "apoec0D06AK8Pj6AFB4XnwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
macrob
2026-09-04 01:24:06
(9 hours ago)
2026/09/04 01:24:04 [error] 339395#339395: *553899881 access forbidden by rule, client: 34.60.163.72 ...
show more
2026/09/04 01:24:04 [error] 339395#339395: *553899881 access forbidden by rule, client: 34.60.163.72, server: finami.mx, request: "GET /.git/config HTTP/2.0", host: "finami.mx"
2026/09/04 01:24:04 [error] 339400#339400: *553794670 access forbidden by rule, client: 34.60.163.72, server: finami.ph, request: "GET /.git/config HTTP/2.0", host: "finami.ph"
2026/09/04 01:24:04 [error] 339398#339398: *553899882 access forbidden by rule, client: 34.60.163.72, server: finami.com.ua, request: "GET /.git/config HTTP/1.1", host: "finami.com.ua"
...
show less
Web App Attack
🇩🇪
dom4k
2026-09-04 01:01:34
(9 hours ago)
34.60.163.72 - - [04/Sep/2026:01:01:33 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Wi ...
show more
34.60.163.72 - - [04/Sep/2026:01:01:33 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
...
show less
Web Spam
Bad Web Bot
Web App Attack
🇨🇭
4server
2026-09-04 00:28:32
(10 hours ago)
[FriSep0402:28:24.6615522026][security2:error][pid2357587:tid2357743][client34.60.163.72:0]ModSecuri ...
show more
[FriSep0402:28:24.6615522026][security2:error][pid2357587:tid2357743][client34.60.163.72:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"fisioterapiafalzone.ch\"][uri\"/.git/config\"][unique_id\"apoQqCngtwvRWSxoMqSolwAAAAY\"]
show less
Hacking
Web App Attack