🇺🇸
TPI-Abuse
2026-09-04 14:39:36
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:39:32.128573 2026] [security2:error] [pid 12935:tid 12935] [client 34.73.231.58:40878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eileensinc.cathrynn.com"] [uri "/backend/.git/config"] [unique_id "aprYJJ9jHwLgyERN3woKsAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 13:44:02
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:43:54.529996 2026] [security2:error] [pid 330:tid 330] [client 34.73.231.58:54348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookofraphael.com"] [uri "/html/.git/config"] [unique_id "aprLGqGCxZ_3TLMqom_EJwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:59:28
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:59:21.824489 2026] [security2:error] [pid 26847:tid 26847] [client 34.73.231.58:47726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.epicureankids.com"] [uri "/.git/config"] [unique_id "apqymZ0OaNhFHo6inDMpnAAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇪🇸
masterguru
2026-09-04 10:30:12
(5 days ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
🇸🇪
vaia.cloud
2026-09-04 08:15:03
(5 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇧🇪
voormedia
2026-09-04 08:03:49
(5 days ago)
Accessed trap at '/.git/config'
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:37:28
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:37:22.922935 2026] [security2:error] [pid 31728:tid 31728] [client 34.73.231.58:54532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tireking.gulftelecom.com"] [uri "/site/.git/config"] [unique_id "appZEiXOt7vpAJKB1cBX_AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:51:16
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:51:09.220394 2026] [security2:error] [pid 24735:tid 24735] [client 34.73.231.58:34714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "steamboatrowena.com"] [uri "/site/.git/config"] [unique_id "appOPTlx2l4GF6aw_SrPZgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 01:02:28
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.231.58 (58.231.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:02:23.372493 2026] [security2:error] [pid 26190:tid 26190] [client 34.73.231.58:57776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uniquetreasuresshops.com"] [uri "/.git/config"] [unique_id "apoYnzK1RZBzgRCzOQzezQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Philister11
2026-09-04 00:07:46
(5 days ago)
CrowdSec: crowdsecurity/http-sensitive-files (US/AS396982)
Web App Attack
Hacking
🇳🇱
e.fierstra
2026-09-03 23:33:36
(5 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-03 23:21:05
(5 days ago)
Multiple WAF Violations
Web App Attack
🇩🇪
sojan
2026-09-03 22:42:48
(5 days ago)
34.73.231.58 - - [04/Sep/2026:00:42:47 +0200] "GET /.git/config HTTP/1.1" 404 5839 "-" "crusader-wor ...
show more
34.73.231.58 - - [04/Sep/2026:00:42:47 +0200] "GET /.git/config HTTP/1.1" 404 5839 "-" "crusader-worker/1.0"
34.73.231.58 - - [04/Sep/2026:00:42:47 +0200] "GET /site/.git/config HTTP/1.1" 404 5839 "-" "crusader-worker/1.0"
34.73.231.58 - - [04/Sep/2026:00:42:47 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 5839 "-" "crusader-worker/1.0"
...
show less
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-03 20:04:09
(5 days ago)
(mod_security) mod_security (id:949110) triggered by 34.73.231.58 (US/United States/58.231.73.34.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 34.73.231.58 (US/United States/58.231.73.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
2026-09-03 18:55:02
(5 days ago)
suspicious request in access.log
Web App Attack