πΊπΈ
TPI-Abuse
2026-09-03 02:35:10
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 22:35:07.086401 2026] [security2:error] [pid 11219:tid 11230] [client 34.62.110.213:34690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.randycameron.com"] [uri "/.git/config"] [unique_id "apjc2xOkhYafVGUy6DLjhgAAAEE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΏπ¦
conure.sh
2026-09-03 02:30:43
(5 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
π«π·
masterguru
2026-09-03 02:21:58
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 01:49:18
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:49:10.994827 2026] [security2:error] [pid 24036:tid 24036] [client 34.62.110.213:46396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.acraloc.com"] [uri "/www/.git/config"] [unique_id "apjSFtI8gIVKV1c9Mj5cLwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 01:15:39
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:15:33.922860 2026] [security2:error] [pid 18287:tid 18287] [client 34.62.110.213:32882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.openmolecules.org"] [uri "/html/.git/config"] [unique_id "apjKNQ-e7enfRpOXSBYZYwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 22:41:34
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 18:41:30.095418 2026] [security2:error] [pid 789:tid 789] [client 34.62.110.213:40238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grampys.toys"] [uri "/public/.git/config"] [unique_id "apimGpF3k21iHp4T93ucNQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 12:23:00
(19 hours ago)
Unauthorized attempt to read sensitive files: GET /backend/.git/config HTTP/1.1
Bad Web Bot
Web App Attack
π©πͺ
FD-IX
2026-09-02 06:16:33
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 05:20:32
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
π³π΄
jad-abuse
2026-09-02 05:05:15
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 36 hits.
show less
Web App Attack
π¬π§
Aetherweb Ark
2026-09-02 04:36:36
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 34.62.110.213 (BE/Belgium/213.110.62.34.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 34.62.110.213 (BE/Belgium/213.110.62.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
2026-09-02 03:41:17
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-02 02:22:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:22:08.249235 2026] [security2:error] [pid 26036:tid 26036] [client 34.62.110.213:49836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vintagetejas.com"] [uri "/wordpress/.git/config"] [unique_id "apeIUG4mZig4idELxKFZOwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 00:31:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.110.213 (213.110.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:31:28.888995 2026] [security2:error] [pid 16603:tid 16603] [client 34.62.110.213:60928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.kfraser.com"] [uri "/src/.git/config"] [unique_id "apduYN73fdxlKwKxx5HGpwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Philister11
2026-09-02 00:29:01
(1 day ago)
CrowdSec: crowdsecurity/http-sensitive-files (BE/AS396982)
Web App Attack
Hacking