๐บ๐ธ
TPI-Abuse
2026-09-02 13:11:28
(12 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 09:11:22.703100 2026] [security2:error] [pid 13586:tid 13586] [client 34.86.170.218:51524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lightedpath.com"] [uri "/.git/config"] [unique_id "apggegN3L9QC3PvTHOJLCQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-02 06:19:10
(7 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 12 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:50:35
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:50:29.911584 2026] [security2:error] [pid 31592:tid 31592] [client 34.86.170.218:39820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.discountphotogifts.com"] [uri "/.git/config"] [unique_id "ape5JXbcr4sTLGyEKMsenAAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:40:55
(8 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
raph
2026-09-02 04:10:14
(9 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-02 02:30:40
(10 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
mondor.ro
2026-09-02 01:05:41
(12 hours ago)
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.86.170.218, Reason: ...
show more
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.86.170.218, Reason:[(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (US/United States/218.170.86.34.bc.googleusercontent.com): 3 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
Port Scan
๐ซ๐ท
dynamix
2026-09-01 21:43:25
(15 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-01 20:32:48
(16 hours ago)
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /app/.git/config HTTP/1.1" 403 164 "-" "crusader ...
show more
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /app/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /www/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /backend/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /src/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /public/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /html/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /api/.git/config HTTP/1.1" 403 164 "-" "crusader-worker/1.0"
34.86.170.218 - - [01/Sep/2026:22:32:48 +0200] "GET /site/.git/config HTTP/1.1" 403 164 "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 19:14:12
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:14:04.279343 2026] [security2:error] [pid 10965:tid 10993] [client 34.86.170.218:57490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "n2play.net"] [uri "/html/.git/config"] [unique_id "apcj_KcR7dNeWujO8xxzRwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 18:20:42
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.86.170.218 (218.170.86.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:20:37.068701 2026] [security2:error] [pid 11822:tid 11822] [client 34.86.170.218:42626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jabbosjingles.com"] [uri "/src/.git/config"] [unique_id "apcXddWDv_ZFfFw1Z7JaOwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-01 15:18:22
(22 hours ago)
Try to access /backend/.git/config
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-01 13:08:00
(1 day ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 11:52:40
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 08:26:09
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack