๐บ๐ธ
TPI-Abuse
2026-08-25 16:53:51
(8 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:53:43.727687 2026] [security2:error] [pid 14682:tid 14682] [client 34.81.94.31:32184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nsightsound.com"] [uri "/.git/config"] [unique_id "ao3IlwTnK6Q7evYndxHnZQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 16:47:24
(14 minutes ago)
34.81.94.31 - - [25/Aug/2026:18:47:23 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (W ...
show more
34.81.94.31 - - [25/Aug/2026:18:47:23 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-25 16:32:48
(29 minutes ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:24:23
(37 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:24:13.459346 2026] [security2:error] [pid 31509:tid 31509] [client 34.81.94.31:51186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "letmespeakpodcast.com"] [uri "/.git/config"] [unique_id "ao3BrVOxL0CPBa3MDmewAQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
inlink.ltd
2026-08-25 16:07:12
(54 minutes ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:04:23
(57 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:04:16.834937 2026] [security2:error] [pid 19899:tid 19938] [client 34.81.94.31:24866] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ingeconsultcr.com"] [uri "/.git/config"] [unique_id "ao29ALdC4CYsTrmkNKWoKAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-25 15:47:08
(1 hour ago)
csagent: score 20.5: 404 noise floor x2, secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:30:28
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:30:25.057503 2026] [security2:error] [pid 32056:tid 32056] [client 34.81.94.31:21050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "esad.com"] [uri "/.git/config"] [unique_id "ao21ETPXbTOk5eoiG_ao2AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
billfor
2026-08-25 15:27:37
(1 hour ago)
34.81.94.31 - - [25/Aug/2026:11:27:34 -0400] "GET /.git/config HTTP/1.1" 404 0 "-" "Mozilla/5.0 (Win ...
show more
34.81.94.31 - - [25/Aug/2026:11:27:34 -0400] "GET /.git/config HTTP/1.1" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:13:47
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:13:40.090948 2026] [security2:error] [pid 480:tid 480] [client 34.81.94.31:43970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dadhania.net"] [uri "/.git/config"] [unique_id "ao2xJAdjhQbO6lA9XP0IzAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-25 15:13:37
(1 hour ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:57:24
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:57:18.211528 2026] [security2:error] [pid 9866:tid 9866] [client 34.81.94.31:50524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calveley.com"] [uri "/.git/config"] [unique_id "ao2tTv9wvm4zjXVX47Y2pAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:29:17
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.94.31 (31.94.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:29:11.289303 2026] [security2:error] [pid 31860:tid 31860] [client 34.81.94.31:35278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "austinbiblestudents.org"] [uri "/.env"] [unique_id "ao2mt5mWOiZU5gpDd-GgHQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Aurealize
2026-08-25 13:37:21
(3 hours ago)
Automated Sensitive File discovery attempt detected by a Cloudflare WAF custom rule. Path: /.env.bak ...
show more
Automated Sensitive File discovery attempt detected by a Cloudflare WAF custom rule. Path: /.env.bak. Automated Sensitive File discovery attempt detected by a Cloudflare WAF custom rule. Path: /.git/config.
show less
Hacking
Web App Attack
Anonymous
2026-08-25 12:06:05
(4 hours ago)
Trying to access config files
Web App Attack