๐ฉ๐ช
ghostwarriors
2026-08-27 18:20:05
(15 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-27 17:55:47
(15 hours ago)
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /.git/config HTTP/1.1" 403 457 "-" "crusader-wor ...
show more
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /.git/config HTTP/1.1" 403 457 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /app/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /src/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /backend/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /api/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /www/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /html/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /site/.git/config HTTP/1.1" 404 454 "-" "crusader-worker/1.0"
34.89.154.181 - - [27/Aug/2026:19:55:44 +0200] "GET /public/.git/config HTTP/1.1" 404 454 "-"
show less
Web App Attack
Hacking
๐ฉ๐ช
big-cloud.nl
2026-08-27 15:34:57
(17 hours ago)
Try to access /.git/config
Web App Attack
๐ท๐ด
iulianh
2026-08-27 14:41:58
(18 hours ago)
80,443
Brute-Force
SSH
๐ซ๐ท
lindi
2026-08-27 14:27:06
(18 hours ago)
Probing for resource vulnerabilities
...
Web Spam
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 13:12:13
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.89.154.181 (181.154.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.154.181 (181.154.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:12:07.152839 2026] [security2:error] [pid 17840:tid 17840] [client 34.89.154.181:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.c2cservices.com"] [uri "/.git/config"] [unique_id "apA3p-Y5_W810RpXV504KgAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-27 12:23:14
(20 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.89.154.181 (DE/Germany/181.154.8 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.89.154.181 (DE/Germany/181.154.89.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:32:11
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.89.154.181 (181.154.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.154.181 (181.154.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:32:03.413160 2026] [security2:error] [pid 23647:tid 23647] [client 34.89.154.181:55164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.marriedtv.com.whoore.com"] [uri "/public/.git/config"] [unique_id "apAEE8zikBrixqHqL9TilAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 08:00:00
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
seal
2026-08-27 07:16:35
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force
๐ณ๐ฑ
e.fierstra
2026-08-27 04:50:23
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-27 03:45:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 02:58:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.89.154.181 (181.154.89.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.89.154.181 (181.154.89.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:58:21.901058 2026] [security2:error] [pid 28439:tid 28439] [client 34.89.154.181:55142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lilytaylor.ingberinteriors.com"] [uri "/app/.git/config"] [unique_id "ao-nzRItCot7UbbryQRA3wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 02:38:42
(1 day ago)
34.89.154.181 - - [26/Aug/2026:23:38:41 -0300] "GET /html/.git/config HTTP/1.1" 403 1810 "-" "crusad ...
show more
34.89.154.181 - - [26/Aug/2026:23:38:41 -0300] "GET /html/.git/config HTTP/1.1" 403 1810 "-" "crusader-worker/1.0"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-08-27 02:31:48
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking