๐ฉ๐ช
gadix
2026-08-28 16:11:11
(2 days ago)
[28/Aug/2026:18:11:06.231417 +0200] apGzGo757kbG7hsruIqYJAAAAAg 34.73.138.153 59352 127.0.0.1 7081
[ ...
show more
[28/Aug/2026:18:11:06.231417 +0200] apGzGo757kbG7hsruIqYJAAAAAg 34.73.138.153 59352 127.0.0.1 7081
[28/Aug/2026:18:11:06.233411 +0200] apGzGuAdAfs8DRBy4bEwJgAAAAk 34.73.138.153 59358 127.0.0.1 7081
[28/Aug/2026:18:11:06.239054 +0200] apGzGuuhFn_oU_MB7X0SfgAAAAY 34.73.138.153 59362 127.0.0.1 7081
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-08-28 16:05:12
(2 days ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-28 12:41:02
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐ง๐ท
SOC Blue Team
2026-08-27 21:25:59
(3 days ago)
IPs get by Hunting on SIEM
Phishing
Web Spam
Port Scan
Hacking
๐ฉ๐ช
pltcldvlpr
2026-08-27 18:22:19
(3 days ago)
CMS/framework probe: 34.73.138.153 - - [27/Aug/2026:20:22:18 +0200] "GET /public/.git/config HTTP/1. ...
show more
CMS/framework probe: 34.73.138.153 - - [27/Aug/2026:20:22:18 +0200] "GET /public/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0" asn=396982 org="Google LLC" country=US
...
show less
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 16:39:05
(3 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:31:20
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:31:12.858320 2026] [security2:error] [pid 877:tid 877] [client 34.73.138.153:59238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ibook.micahgartman.com"] [uri "/.git/config"] [unique_id "apBmUC0TKBmPibnLeoAShgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 15:20:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:20:51.247452 2026] [security2:error] [pid 18953:tid 18953] [client 34.73.138.153:33138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.truthbeam.org.amybeam.com"] [uri "/html/.git/config"] [unique_id "apBV0wnbV6TkhSyGWk9pZQAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
geot
2026-08-27 14:35:26
(3 days ago)
GET /public/.git/config HTTP/1.1
GET /site/.git/config HTTP/1.1
GET /api/.git/config HTTP/1.1
GET /b ...
show more
GET /public/.git/config HTTP/1.1
GET /site/.git/config HTTP/1.1
GET /api/.git/config HTTP/1.1
GET /backend/.git/config HTTP/1.1
GET /htdocs/.git/config HTTP/1.1
GET /var/www/.git/config HTTP/1.1
GET /wordpress/.git/config HTTP/1.1
GET /html/.git/config HTTP/1.1
GET /www/.git/config HTTP/1.1
GET /src/.git/config HTTP/1.1
GET /app/.git/config HTTP/1.1
GET /.git/config HTTP/1.1
show less
Hacking
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-27 14:14:34
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
raph
2026-08-27 13:04:58
(3 days ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 11:51:28
(3 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:50:23
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:50:15.206596 2026] [security2:error] [pid 22303:tid 22303] [client 34.73.138.153:37370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thesteeldrumman.com"] [uri "/html/.git/config"] [unique_id "apAkd4u3biuWbNEzqHR1KgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
Esko
2026-08-27 11:33:16
(3 days ago)
34.73.138.153 - - [27/Aug/2026:11:33:16 +0000] "GET /www/.git/config HTTP/1.1" 488 0 "-" "crusader-w ...
show more
34.73.138.153 - - [27/Aug/2026:11:33:16 +0000] "GET /www/.git/config HTTP/1.1" 488 0 "-" "crusader-worker/1.0"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:50:51
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.138.153 (153.138.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:50:44.828335 2026] [security2:error] [pid 14833:tid 14833] [client 34.73.138.153:51286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eutoc.com"] [uri "/src/.git/config"] [unique_id "apAWhNnEiFJENN1jtD_5HAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack