πΏπ¦
conure
2026-07-22 12:11:17
(44 minutes ago)
csagent: score 19.0: secrets grab x2, 404 noise floor x1; 2 domain(s) in 23s
Web App Attack
πΊπΈ
Rocky Mountain Bioengineering Symposium
2026-07-21 18:28:43
(18 hours ago)
34.75.61.39 - - [21/Jul/2026:12:28:42 -0600] "GET /.git/config HTTP/1.1" 301 3940 "-" "-"
...
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 18:22:39
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 14:22:33.183474 2026] [security2:error] [pid 3202258:tid 3202258] [client 34.75.61.39:44724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hisfavorite.net"] [uri "/.git/config"] [unique_id "al-46eooiVNNPd2ETjCgCAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 18:05:55
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 14:05:48.335745 2026] [security2:error] [pid 219516:tid 219516] [client 34.75.61.39:43892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hi-niemczuras.net"] [uri "/.git/config"] [unique_id "al-0_C2QqTiMQrOY-lKTfwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 17:49:34
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 13:49:27.873411 2026] [security2:error] [pid 220693:tid 220693] [client 34.75.61.39:57626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hilarysaundersmusic.tremulant.com"] [uri "/.git/config"] [unique_id "al-xJ398ecvLv8GFDNXQrAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Bedios GmbH
2026-07-21 17:30:58
(19 hours ago)
Login credentials theft attempt
Hacking
πΊπΈ
TPI-Abuse
2026-07-21 17:16:32
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 13:16:26.445406 2026] [security2:error] [pid 189111:tid 189111] [client 34.75.61.39:36880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hickorygrovecottages.com"] [uri "/.git/config"] [unique_id "al-parapDXhw7HJ-2OWkcgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-07-21 17:05:08
(19 hours ago)
Abuse Detected (17)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 16:54:18
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 12:54:10.668859 2026] [security2:error] [pid 14284:tid 14284] [client 34.75.61.39:60216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heytechiesshow.com"] [uri "/.git/config"] [unique_id "al-kMiNlGh13blC4x9D8qAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
big-cloud.nl
2026-07-21 16:41:22
(20 hours ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 16:31:40
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 12:31:32.946186 2026] [security2:error] [pid 17749:tid 17749] [client 34.75.61.39:33432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heron-ent.com"] [uri "/.git/config"] [unique_id "al-e5IjpuPFj6blpzWSa9wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
2000cn.com.au
2026-07-21 16:22:25
(20 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-07-21 16:08:27
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 12:08:24.013204 2026] [security2:error] [pid 2110088:tid 2110088] [client 34.75.61.39:51770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.henryweb.net"] [uri "/.git/config"] [unique_id "al-ZeBJ9QT7Wft6kQvwSnAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-21 16:00:03
(20 hours ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 15:53:05
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.61.39 (39.61.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 11:52:59.439249 2026] [security2:error] [pid 3169284:tid 3169284] [client 34.75.61.39:56576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.helstone.com"] [uri "/.git/config"] [unique_id "al-V2-N9QZFQjPenz1KkjgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack