🇬🇧
andypiper
2026-09-08 01:02:50
(21 minutes ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
🇩🇪
bogdanv
2026-09-08 00:51:56
(32 minutes ago)
$f2bV_matches
DDoS Attack
Web Spam
SQL Injection
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Charlesiv
2026-09-08 00:38:20
(45 minutes ago)
Triggered Cloudflare WAF (firewallCustom) from NL.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from NL.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-09-07T23:13:47Z
Ray ID: a37967f1a81a55e3
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 15_3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36 OPR/121.0.0.0
show less
Bad Web Bot
🇨🇿
ddw
2026-09-08 00:26:46
(57 minutes ago)
ModSecurity detection - Rules: 930130(Restricted File Access Attempt)
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 00:10:34
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.7.38.20 (20.38.7.34.bc.googleusercontent.com ...
show more
(mod_security) mod_security (id:210492) triggered by 34.7.38.20 (20.38.7.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 20:10:27.636504 2026] [security2:error] [pid 5578:tid 5578] [client 34.7.38.20:54192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jeremy-olson.com"] [uri "/.git/config"] [unique_id "ap9Sc1Yok5Y8n2fUsvv09wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 23:59:05
(1 hour ago)
Web application attack detected.
Web App Attack
🇺🇸
itsnixk
2026-09-07 23:56:00
(1 hour ago)
(mod_security) mod_security (id:930130) triggered by 34.7.38.20 (NL/The Netherlands/20.38.7.34.bc.go ...
show more
(mod_security) mod_security (id:930130) triggered by 34.7.38.20 (NL/The Netherlands/20.38.7.34.bc.googleusercontent.com): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Sep 07 19:55:55.788058 2026] [security2:error] [pid 673317:tid 673392] [remote 34.7.38.20:0] ModSecurity: Access denied with code 406 (phase 1). Matched phrase ".git/" at REQUEST_FILENAME. [file "/etc/modsecurity.d/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "150"] [id "930130"] [msg "Restricted File Access Attempt"] [redacted] [severity "CRITICAL"] [ver "OWASP_CRS/4.28.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/ATTACK-LFI"] [tag "capec/1000/255/153/126"] [redacted] [uri "/.git/config"] [unique_id "ap9PCxywqFnJ04lyjh7huQAAIDk"]
show less
Port Scan
🇺🇸
MPL
2026-09-07 23:55:10
(1 hour ago)
tcp/443 (6 or more attempts)
Port Scan
Anonymous
2026-09-07 23:55:03
(1 hour ago)
[07/Sep/2026:23:55:03 +0000] host=voyager.lovelyrender.app server=voyager.lovelyrender.app ip=34.7.3 ...
show more
[07/Sep/2026:23:55:03 +0000] host=voyager.lovelyrender.app server=voyager.lovelyrender.app ip=34.7.38.20 method=GET req=/.git/config uri=/index.php status=200 bytes=2261 rt=0.015 urt=0.015 ref="-" ua="Mozilla/5.0 (Linux; Android 14; SM-S928B) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/26.0 Chrome/134.0.0.0 Mobile Safari/537.36"
...
show less
Web App Attack
Bad Web Bot
🇺🇦
Olexiy Backend
2026-09-07 23:54:01
(1 hour ago)
34.7.38.20
...
Bad Web Bot
Web App Attack
🇩🇪
0x44
2026-09-07 23:49:42
(1 hour ago)
Abusive host detected - Web probing for vulnerabilities
Web App Attack
Anonymous
2026-09-07 23:48:05
(1 hour ago)
Web probing (2 hits in 24h) on default-vhost,limburgsekunstkring.nl: sensitive-path scans and/or 404 ...
show more
Web probing (2 hits in 24h) on default-vhost,limburgsekunstkring.nl: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
Anonymous
2026-09-07 23:45:22
(1 hour ago)
Scan for .git Files at 2026-09-07T23:45:22+00:00
Web App Attack
🇮🇹
Inartis
2026-09-07 23:39:18
(1 hour ago)
34.7.38.20 - - [07/Sep/2026:23:45:17 +0200] "GET /.git/config HTTP/1.1" 302 5461 "-" "Mozilla/5.0 (L ...
show more
34.7.38.20 - - [07/Sep/2026:23:45:17 +0200] "GET /.git/config HTTP/1.1" 302 5461 "-" "Mozilla/5.0 (Linux; Android 14; SM-A556B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Mobile Safari/537.36"
34.7.38.20 - - [08/Sep/2026:01:39:17 +0200] "GET /.git/config HTTP/1.1" 403 6345 "-" "Mozilla/5.0 (Linux; Android 16; SM-S961B) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.0.0 Mobile Safari/537.36"
34.7.38.20 - - [08/Sep/2026:01:39:17 +0200] "GET /.git/config HTTP/1.1" 403 6345 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 15_2) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/18.2 Safari/605.1.15"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
SCHAPPY
2026-09-07 23:38:43
(1 hour ago)
Probing for non-installed web apps or current vulnerabilities.
Hacking
Web App Attack