๐ณ๐ฑ
Site.eu
2026-09-17 07:38:44
(48 minutes ago)
Excessive multi-domain requests
Brute-Force
๐จ๐ญ
GAS
2026-09-17 03:26:02
(5 hours ago)
Bad Bot.
34.91.236.239 - - [17/Sep/2026:05:26:02 +0200] "GET /_environment HTTP/2.0" 307 1166 "-" "M ...
show more
Bad Bot.
34.91.236.239 - - [17/Sep/2026:05:26:02 +0200] "GET /_environment HTTP/2.0" 307 1166 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36""NL"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:22:49
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:22:45.944127 2026] [security2:error] [pid 13534:tid 13534] [client 34.91.236.239:54504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vintagetejas.com"] [uri "/.git/config"] [unique_id "aqtdBUjnIJ5-NhQhnslloQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-17 03:17:37
(5 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 03:04:48
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 23:04:41.513396 2026] [security2:error] [pid 31251:tid 31251] [client 34.91.236.239:50682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vintageamptubes.com"] [uri "/.git/config"] [unique_id "aqtYyfMuTt3pA4RwvwUJcwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-16 16:12:45
(16 hours ago)
[16/Sep/2026:19:12:44 +0300] -- 34.91.236.239 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[16/Sep/2026:19:12:44 +0300] -- 34.91.236.239 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-16 15:44:44
(16 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-16 15:36:02
(16 hours ago)
Try to access /.git/config
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-09-16 15:34:13
(16 hours ago)
2026-09-16 17:31:50 GET /.git/config [301] && 2026-09-16 17:31:50 GET /.env [301] && 2026-09-16 17:3 ...
show more
2026-09-16 17:31:50 GET /.git/config [301] && 2026-09-16 17:31:50 GET /.env [301] && 2026-09-16 17:31:51 GET /.env.bak [301] && 241 more within 20 minutes
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 13:50:10
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:50:06.004316 2026] [security2:error] [pid 20409:tid 20409] [client 34.91.236.239:41710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "usfspirit.com"] [uri "/.git/config"] [unique_id "aqqejg4P5PQVzzanZ8VYawAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:48:43
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:48:39.356550 2026] [security2:error] [pid 4660:tid 4660] [client 34.91.236.239:47466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uhfcfoundation.org"] [uri "/.git/config"] [unique_id "aqqQJ3EOGhso2PXev7QNNQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 10:21:27
(22 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 06:21:39
(1 day ago)
[ti-22al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-22al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.91.236.239 - - [16/Sep/2026:08:21:20 +0200] "GET /.git/config HTTP/1.1" 404 2126 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
diosama
2026-09-16 00:51:12
(1 day ago)
CrowdSec blocked: crowdsecurity/appsec-vpatch
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 22:31:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.91.236.239 (239.236.91.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 18:31:34.423237 2026] [security2:error] [pid 28422:tid 28422] [client 34.91.236.239:36784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "usefulendeavors.org"] [uri "/.git/config"] [unique_id "aqnHRmCY_DJmsMa3utigNQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack