🇺🇸
TPI-Abuse
2026-09-08 02:59:57
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 22:59:49.459756 2026] [security2:error] [pid 10644:tid 10644] [client 34.84.121.201:39378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tech-servusa.com"] [uri "/.git/config"] [unique_id "ap96JatoGzhbPBeoh1n0vQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-08 00:42:15
(6 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
🇳🇱
Site.eu
2026-09-07 23:56:37
(7 hours ago)
Excessive 404/403 errors
Brute-Force
🇨🇭
4server
2026-09-07 22:59:20
(8 hours ago)
[TueSep0800:59:15.4968352026][security2:error][pid3101273:tid3101502][client34.84.121.201:0]ModSecur ...
show more
[TueSep0800:59:15.4968352026][security2:error][pid3101273:tid3101502][client34.84.121.201:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"teatrotangram.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"ap9Bw0J37M1mv_fIzY9IaQAAAUU\"]
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 20:49:03
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:48:57.306804 2026] [security2:error] [pid 872275:tid 872292] [client 34.84.121.201:42698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teanaunz.com"] [uri "/.git/config"] [unique_id "ap8jObZBiXUuFNMTNeFTdAAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:24:26
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:24:21.231716 2026] [security2:error] [pid 17137:tid 17137] [client 34.84.121.201:54348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamwakimphotography.com"] [uri "/.git/config"] [unique_id "ap8PZWuSj9oLe9OZXkwRogAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:31:21
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:31:12.697275 2026] [security2:error] [pid 2162774:tid 2162774] [client 34.84.121.201:41324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamspiro.com"] [uri "/.git/config"] [unique_id "ap704In0O-aykYUspu94pwAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇴
Bots.go.to.hell
2026-09-07 17:24:24
(13 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-admin-interface-probing
Web App Attack
Hacking
🇩🇪
LRob
2026-09-07 17:03:23
(14 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-07 17:03 UTC
show less
Hacking
Web App Attack
🇺🇸
deskpass.com
2026-09-07 16:02:21
(15 hours ago)
GET /core/phpinfo.php
Web App Attack
🇬🇧
consul.to
2026-09-07 13:43:49
(17 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇦🇺
neilwal
2026-09-07 12:42:12
(18 hours ago)
Web Probe (443): teamhummingbird.neilwallace.au:443 34.84.121.201 - - [07/Sep/2026:22:42:11 +1000] " ...
show more
Web Probe (443): teamhummingbird.neilwallace.au:443 34.84.121.201 - - [07/Sep/2026:22:42:11 +1000] "GET /.git/config HTTP/1.1" 401 809 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
teamhummingbird.neilwallace.au:443 34.84.121.201 - - [07/Sep/2026:22:42:11 +1000] "GET /.env HTTP/1.1" 401 809 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
teamhummingbird.neilwallace.au:443 34.84.121.201 - - [07/Sep/2026:22:42:11 +1000] "GET /.env.local HTTP/1.1" 401 809 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 12:18:48
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.121.201 (201.121.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 08:18:43.575925 2026] [security2:error] [pid 5326:tid 5326] [client 34.84.121.201:59240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamgravity.ca"] [uri "/.git/config"] [unique_id "ap6ro7WEkA8tEYVvAl4SLQAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇿
Antinson
2026-09-07 11:26:05
(19 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇫🇷
masterguru
2026-09-07 11:25:43
(19 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack