๐บ๐ธ
TPI-Abuse
2026-08-25 20:29:59
(15 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 16:29:52.907028 2026] [security2:error] [pid 17398:tid 17398] [client 34.80.169.211:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "365soft.top"] [uri "/.env"] [unique_id "ao37QG1uCAFX5lmjP6iB2gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2026-08-25 18:27:28
(2 hours ago)
tcp/443; Git configuration exposure attempt: "GET /.git/config" @ 2026-08-25T18:21:01Z [proxy]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 18:08:18
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:08:13.152263 2026] [security2:error] [pid 8252:tid 8252] [client 34.80.169.211:23090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "34thprs.org"] [uri "/.env"] [unique_id "ao3aDS-x579nW2Iu0M9VlQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:45:38
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:45:34.242695 2026] [security2:error] [pid 5842:tid 5856] [client 34.80.169.211:35434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sylvestconsulting.com"] [uri "/.git/config"] [unique_id "ao3UvpCtKrwHYJsj_q25LQAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:07:49
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:07:42.881463 2026] [security2:error] [pid 4284:tid 4284] [client 34.80.169.211:42892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "portlunchgroup.com"] [uri "/.git/config"] [unique_id "ao3L3hx1jrekNS6MKqYjTQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-25 16:58:54
(3 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:29:03
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:28:54.042667 2026] [security2:error] [pid 21172:tid 21172] [client 34.80.169.211:10154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "logicpuzzles.com"] [uri "/.git/config"] [unique_id "ao3CxlKGHOKyjno2ywtNdgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:08:48
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:08:39.855436 2026] [security2:error] [pid 2231319:tid 2231416] [client 34.80.169.211:45068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jazzzcatz.com"] [uri "/.git/config"] [unique_id "ao2-B_l358e3YA-hr6HDSAAAAVg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-25 15:57:36
(4 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-25 15:47:08
(4 hours ago)
csagent: score 20.0: secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:34:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:34:17.951221 2026] [security2:error] [pid 10868:tid 10868] [client 34.80.169.211:14884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "farmers123.com"] [uri "/.git/config"] [unique_id "ao21-X0d3S8I28dpzanbAQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:08:53
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:08:49.905115 2026] [security2:error] [pid 19488:tid 19488] [client 34.80.169.211:40734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "convoyforkids.com"] [uri "/.git/config"] [unique_id "ao2wAVobH_Ztln8E5qfybQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:40:48
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:40:42.991442 2026] [security2:error] [pid 28914:tid 28914] [client 34.80.169.211:45058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "astglobaltech.com"] [uri "/.git/config"] [unique_id "ao2pavPMcSl4H9jRb1UHwQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:21:45
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.169.211 (211.169.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:21:40.652173 2026] [security2:error] [pid 16341:tid 16427] [client 34.80.169.211:51372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "21370.com"] [uri "/.git/config"] [unique_id "ao2k9M8u9dpSFXhJ50QQowAAAhY"]
show less
Brute-Force
Bad Web Bot
Web App Attack