π³π±
e.fierstra
2026-09-02 05:04:46
(12 minutes ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 04:31:37
(45 minutes ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-02 01:01:28
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 21:01:21.287113 2026] [security2:error] [pid 3544:tid 3544] [client 34.84.25.39:36880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gisur.com"] [uri "/backend/.git/config"] [unique_id "apd1YbAENi2msOmTUAWY3gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 00:40:45
(4 hours ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 19:53:03
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:52:57.009023 2026] [security2:error] [pid 4954:tid 4954] [client 34.84.25.39:34514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darrenpeck.com"] [uri "/api/.git/config"] [unique_id "apctGfRYieMALNmn2-yBmAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 19:30:26
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:30:22.324829 2026] [security2:error] [pid 29288:tid 29288] [client 34.84.25.39:38098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "damgoodit.com"] [uri "/htdocs/.git/config"] [unique_id "apcnzuyhvMJFQHC09vGe3wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-09-01 14:42:03
(14 hours ago)
Multiple WAF Violations
Web App Attack
πΈπͺ
vaia.cloud
2026-09-01 14:10:02
(15 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
π©πͺ
mravb
2026-09-01 10:18:50
(18 hours ago)
34.84.25.39 - - [01/Sep/2026:13:18:48 +0300] "GET /wordpress/.git/config HTTP/1.1" 404 160 "-" "crus ...
show more
34.84.25.39 - - [01/Sep/2026:13:18:48 +0300] "GET /wordpress/.git/config HTTP/1.1" 404 160 "-" "crusader-worker/1.0"
...
show less
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-01 09:09:48
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:09:43.455678 2026] [security2:error] [pid 27409:tid 27409] [client 34.84.25.39:35460] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seanevans.com"] [uri "/html/.git/config"] [unique_id "apaWV8fyR_CcwVuMRvkUGAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
gws-hostmaster
2026-09-01 08:30:08
(20 hours ago)
ModSecurity OWASP CRS (Anomaly Score: 5): Restricted File Access Attempt;
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 08:29:48
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.84.25.39 (39.25.84.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 04:29:44.937524 2026] [security2:error] [pid 27034:tid 27117] [client 34.84.25.39:38074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "internationalacademyofprojectmanagement.com.aafm.us"] [uri "/app/.git/config"] [unique_id "apaM-DIRuId73agZbiNyegAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-09-01 06:29:45
(22 hours ago)
[01/Sep/2026:09:29:44 +0300] -- 34.84.25.39 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/c ...
show more
[01/Sep/2026:09:29:44 +0300] -- 34.84.25.39 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-09-01 05:28:05
(23 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-01 05:18:41
(23 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking