🇫🇷
dynamix
2026-08-30 00:16:27
(16 hours ago)
Multiple WAF Violations
Web App Attack
🇳🇱
i-turnradio.nl
2026-08-29 23:52:20
(16 hours ago)
2026-08-30 @ 01:52:20 (CET) ~ Blocked for trying to access: /www/.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 23:32:56
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:32:50.711307 2026] [security2:error] [pid 32739:tid 32739] [client 34.73.74.111:44360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ichoosethelight.org"] [uri "/wordpress/.git/config"] [unique_id "apNsIuLQSSFogcYsSy7rogAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-29 22:26:53
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 18:26:48.551645 2026] [security2:error] [pid 7763:tid 7763] [client 34.73.74.111:56514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.wealthsec.com"] [uri "/var/www/.git/config"] [unique_id "apNcqF47fqlPIchF-Y30HgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Mangelot Hosting
2026-08-28 16:40:06
(1 day ago)
(modsecurity) srv101 ModSecurity 34.73.74.111 (US/United States/111.74.73.34.bc.googleusercontent.co ...
show more
(modsecurity) srv101 ModSecurity 34.73.74.111 (US/United States/111.74.73.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
2026-08-28 04:35:58
(2 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
🇩🇪
Hugopvigo
2026-08-27 23:51:46
(2 days ago)
34.73.74.111 - - [28/Aug/2026:01:51:45 +0200] "GET /.git/config HTTP/1.1" 403 7857 "-" "crusader-wor ...
show more
34.73.74.111 - - [28/Aug/2026:01:51:45 +0200] "GET /.git/config HTTP/1.1" 403 7857 "-" "crusader-worker/1.0"
...
show less
Hacking
Brute-Force
Web App Attack
SSH
🇸🇪
vaia.cloud
2026-08-27 16:55:07
(2 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 16:28:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:28:30.168691 2026] [security2:error] [pid 18547:tid 18547] [client 34.73.74.111:37258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thepinman.org"] [uri "/.git/config"] [unique_id "apBlruZmzpTdykqlMUECawAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 16:20:49
(3 days ago)
[osotir.org] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/backend/.git/config | /api/ ...
show more
[osotir.org] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/backend/.git/config | /api/.git/config | /htdocs/.git/config
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 15:22:52
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 11:22:44.655064 2026] [security2:error] [pid 31405:tid 31405] [client 34.73.74.111:35254] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ds12bonn.de"] [uri "/.git/config"] [unique_id "apBWRPGC2MkNv74f_cHI0AAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 13:40:58
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:40:53.813290 2026] [security2:error] [pid 5737:tid 5737] [client 34.73.74.111:36366] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.penelopeswales.com"] [uri "/backend/.git/config"] [unique_id "apA-ZSLz9Pz9UlYaPtySAAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 12:30:10
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:30:02.481697 2026] [security2:error] [pid 3142:tid 3142] [client 34.73.74.111:54986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "destintoday.com"] [uri "/www/.git/config"] [unique_id "apAtyld9xy8WPm9F7f1eaQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
debaba
2026-08-27 11:40:13
(3 days ago)
aktiv
[27/Aug/2026:11:40:13.070394 +0000] apAiHQpi0HYKYaqx_NvUkAAAAEQ 34.73.74.111 47282 127.0.0.1 7 ...
show more
aktiv
[27/Aug/2026:11:40:13.070394 +0000] apAiHQpi0HYKYaqx_NvUkAAAAEQ 34.73.74.111 47282 127.0.0.1 7081
[27/Aug/2026:11:40:13.072148 +0000] apAiHSf7TzmDbEuW
...
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 11:31:11
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.74.111 (111.74.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:31:03.669990 2026] [security2:error] [pid 17871:tid 17871] [client 34.73.74.111:53956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.coiledtubingdrilling.com.antech.net"] [uri "/html/.git/config"] [unique_id "apAf9zpo3osky1vIop-9iwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack