🇺🇸
TPI-Abuse
2026-08-29 22:29:23
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 18:29:19.072231 2026] [security2:error] [pid 27716:tid 27716] [client 34.62.202.51:38058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paulsingdahlsen.com"] [uri "/wordpress/.git/config"] [unique_id "apNdP7KIAIa58kRnacR6DAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 13:44:00
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 09:43:53.902144 2026] [security2:error] [pid 15223:tid 15223] [client 34.62.202.51:46676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okeetokee.org"] [uri "/html/.git/config"] [unique_id "apLiGecI_r4WIWNm-45WrAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇿🇦
conure.sh
2026-08-29 12:01:38
(19 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 10:37:20
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 06:37:16.393320 2026] [security2:error] [pid 22308:tid 22308] [client 34.62.202.51:34424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "baseball.jpwatters.com"] [uri "/wordpress/.git/config"] [unique_id "apK2XDTXZmJw7JOmxhLaKAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 10:07:36
(21 hours ago)
34.62.202.51 - - [29/Aug/2026:18:07:36 +0800] "GET /app/.git/config HTTP/1.1" 404 196 "-" "crusader- ...
show more
34.62.202.51 - - [29/Aug/2026:18:07:36 +0800] "GET /app/.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇦🇺
2000cn.com.au
2026-08-29 09:52:21
(21 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-29 08:38:47
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 04:38:42.825933 2026] [security2:error] [pid 24005:tid 24005] [client 34.62.202.51:60844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ramabahama.net"] [uri "/backend/.git/config"] [unique_id "apKakvPhZOjcVjLSuCg40gAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-08-29 06:46:35
(1 day ago)
Multiple WAF Violations
Web App Attack
🇳🇱
MM-bot
2026-08-29 06:25:50
(1 day ago)
URL-probe: HTTP/1.1 GET request on /public/.git/config (2026-08-29 08:25:50 UTC+2)
Web App Attack
Hacking
🇳🇱
WeCloudit-Anti-Abuse
2026-08-29 05:46:49
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-29 05:14:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.62.202.51 (51.202.62.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:13:58.934718 2026] [security2:error] [pid 5288:tid 5288] [client 34.62.202.51:50750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mccachren.org"] [uri "/var/www/.git/config"] [unique_id "apJqlmJd_1SDZgS5KW0SsAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 04:45:02
(1 day ago)
suspicious request in access.log
Web App Attack
🇩🇪
yvoictra
2026-08-29 01:56:27
(1 day ago)
Bloqueado automáticamente por CrowdSec. Escenario: crowdsecurity/http-sensitive-files
Web App Attack
🇳🇱
e.fierstra
2026-08-29 00:39:37
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-08-28 21:25:01
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack