🇺🇸
TPI-Abuse
2026-09-07 09:40:43
(30 minutes ago)
(mod_security) mod_security (id:949110) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 05:40:37.140096 2026] [security2:error] [pid 27999:tid 27999] [client 34.65.186.72:39980] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "scrase.com"] [uri "/.git/config"] [unique_id "ap6GldDCE0MG46_TnMutWAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
2000cn.com.au
2026-09-07 09:25:39
(45 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
gamabe
2026-09-07 08:42:14
(1 hour ago)
Detected crowdsecurity/http-sensitive-files attack pattern. Reported by CrowdSec IDS.
Hacking
🇳🇱
ConsulHosting
2026-09-07 07:51:06
(2 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:45:43
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:45:36.019019 2026] [security2:error] [pid 6397:tid 6397] [client 34.65.186.72:39212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scraggw.com"] [uri "/.git/config"] [unique_id "ap5roHpHkzQyXVHBB2BR-gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:29:47
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:29:39.725521 2026] [security2:error] [pid 14211:tid 14211] [client 34.65.186.72:56236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scr-publications.us.schlegelcreative.com"] [uri "/.git/config"] [unique_id "ap5n418SDxoUxHSq7RwM8gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 06:58:18
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 02:58:11.583936 2026] [security2:error] [pid 20051:tid 20051] [client 34.65.186.72:57502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scperu.net"] [uri "/.git/config"] [unique_id "ap5gg7v60nTwLp6F8z9eiQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-07 06:35:13
(3 hours ago)
10.131 requests with url.path *.env
1.625 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
🇳🇱
Site.eu
2026-09-07 06:20:35
(3 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-07 05:57:54
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 01:57:50.363770 2026] [security2:error] [pid 3666:tid 3666] [client 34.65.186.72:45936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scoutlanetalent.com"] [uri "/.git/config"] [unique_id "ap5SXpLXLZVclUcRsEBFqwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 04:45:35
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 00:45:31.259017 2026] [security2:error] [pid 30245:tid 30245] [client 34.65.186.72:42626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scottwithers.net"] [uri "/.git/config"] [unique_id "ap5Ba2wVGQXl8Tdcr04puAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 04:26:36
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 00:26:30.585430 2026] [security2:error] [pid 30246:tid 30257] [client 34.65.186.72:36680] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scottspencergfx.com"] [uri "/.git/config"] [unique_id "ap489pjKcfC1cc0rJ8FSSQAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:42:05
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.65.186.72 (72.186.65.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:42:00.838185 2026] [security2:error] [pid 4076:tid 4076] [client 34.65.186.72:54108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scotts.net"] [uri "/.git/config"] [unique_id "ap4yiMuDGyf69jV6fAEFSQAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-07 02:19:55
(7 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇿
Antinson
2026-09-07 01:46:40
(8 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot