🇺🇸
TPI-Abuse
2026-09-06 07:48:35
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 03:48:29.639052 2026] [security2:error] [pid 27436:tid 27436] [client 34.65.174.191:40102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lemoulinavent.org"] [uri "/public/.git/config"] [unique_id "ap0azboabVKkiVWlWQwi4wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 05:58:53
(8 hours ago)
Illegitimate and/or suspicious requests.
Hacking
🇳🇿
Antinson
2026-09-06 04:35:51
(9 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
🇺🇸
ISPLtd
2026-09-06 02:07:14
(11 hours ago)
Sep 5 20:07:13 34.65.174.191 TCP SPT=51324 DPT=80 SYN
Sep 5 20:07:13 34.65.174.191 TCP SPT=51328 D ...
show more
Sep 5 20:07:13 34.65.174.191 TCP SPT=51324 DPT=80 SYN
Sep 5 20:07:13 34.65.174.191 TCP SPT=51328 DPT=80 SYN
Sep 5 20:07:13 34.65.174.191 TCP SPT=60010 DPT=80
...
show less
DDoS Attack
🇺🇸
TPI-Abuse
2026-09-06 02:00:28
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 22:00:23.942616 2026] [security2:error] [pid 8813:tid 8813] [client 34.65.174.191:59134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.pdc14.com"] [uri "/www/.git/config"] [unique_id "apzJN_FYLLjMkybAjT1oRwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
mnazibo
2026-09-06 01:15:08
(12 hours ago)
Date: Sep 06 04:14:22 2026 EAT | Reported IP: 34.65.174.191 mod_security | id: 930130 949110 | CH/us ...
show more
Date: Sep 06 04:14:22 2026 EAT | Reported IP: 34.65.174.191 mod_security | id: 930130 949110 | CH/usernameab.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Tot
show less
SQL Injection
Brute-Force
Bad Web Bot
🇩🇪
big-cloud.nl
2026-09-06 00:10:16
(13 hours ago)
Try to access /htdocs/.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:44:49
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:44:45.873016 2026] [security2:error] [pid 11818:tid 11818] [client 34.65.174.191:37600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calvaryadminservices.com"] [uri "/htdocs/.git/config"] [unique_id "apypbU5tm_-1nSErbXiC8wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 22:25:22
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.174.191 (191.174.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 18:25:14.861203 2026] [security2:error] [pid 26304:tid 26304] [client 34.65.174.191:54348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.kraftre.com"] [uri "/html/.git/config"] [unique_id "apyWygEByYztjagqF-RcIwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 21:25:58
(16 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇫🇷
dynamix
2026-09-05 20:58:48
(17 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
i-turnradio.nl
2026-09-05 13:28:19
(1 day ago)
2026-09-05 @ 15:28:19 (CET) ~ Blocked for trying to access: /app/.git/config
Web App Attack
Anonymous
2026-09-05 13:20:13
(1 day ago)
| [Normal/Switzerland] Aggressive IP 34.65.174.191 (~350 hits). Type: DoS Defender- Web server 400 e ...
show more
| [Normal/Switzerland] Aggressive IP 34.65.174.191 (~350 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
🇮🇪
AutosOnShow
2026-09-05 13:20:06
(1 day ago)
blocked for webapp attack | path requested: /.git/config | seen at 2026-09-05 13:19:20.764 |
Web App Attack
🇵🇱
UMP-PL
2026-09-05 13:16:27
(1 day ago)
Webserver scan (backups, phpadmin, etc.)
Web App Attack