๐ฌ๐ง
Aetherweb Ark
2026-08-27 17:02:35
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 34.95.244.45 (BR/Brazil/45.244.95.34.bc.googleu ...
show more
(mod_security) mod_security (id:949110) triggered by 34.95.244.45 (BR/Brazil/45.244.95.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ณ๐ฑ
thedreamer.nl
2026-08-27 14:09:38
(4 hours ago)
34.95.244.45 - - [27/Aug/2026:16:08:13 +0200] "GET /var/www/.git/config HTTP/1.1" 499 0 "-" "crusade ...
show more
34.95.244.45 - - [27/Aug/2026:16:08:13 +0200] "GET /var/www/.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "BR" "S\xC3\xA3o Paulo" "-23.54750" "-46.63610"
34.95.244.45 - - [27/Aug/2026:16:08:13 +0200] "GET /wordpress/.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "BR" "S\xC3\xA3o Paulo" "-23.54750" "-46.63610"
34.95.244.45 - - [27/Aug/2026:16:08:13 +0200] "GET /htdocs/.git/config HTTP/1.1" 499 0 "-" "crusader-worker/1.0" "BR" "S\xC3\xA3o Paulo" "-23.54750" "-46.63610"
34.95.244.45 - - [27/Aug/2026:16:08:13 +0200] "GET /htdocs/.git/config HTTP/1.1" 301 162 "-" "crusader-worker/1.0" "BR" "S\xC3\xA3o Paulo" "-23.54750" "-46.63610"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:01:39
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.95.244.45 (45.244.95.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.95.244.45 (45.244.95.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:01:33.589424 2026] [security2:error] [pid 10580:tid 10580] [client 34.95.244.45:47050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kennedimoore.click"] [uri "/html/.git/config"] [unique_id "apBDPRSfVf2P3W-ogipbkAAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
ciccio diddo
2026-08-27 13:27:02
(5 hours ago)
High Burst multiple 40X port:Tcp/80,443
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:50:41
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.95.244.45 (45.244.95.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.95.244.45 (45.244.95.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:50:34.962958 2026] [security2:error] [pid 15812:tid 15812] [client 34.95.244.45:38612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "catholicshopper.com"] [uri "/app/.git/config"] [unique_id "apAWek6MYE4EQb5HG2XGYAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:33:06
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.95.244.45 (45.244.95.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.95.244.45 (45.244.95.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:33:01.188257 2026] [security2:error] [pid 3209:tid 3209] [client 34.95.244.45:47074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinnairdwoodworking.com"] [uri "/app/.git/config"] [unique_id "apAETaASjOQQtDWnX5JzYAAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-27 07:40:20
(10 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 36 hits.
show less
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 06:55:16
(11 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 06:48:06
(11 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-08-27 05:50:04
(12 hours ago)
| [Dangerous/Brazil] Aggressive IP 34.95.244.45 (~30 hits). Type: DoS Defender- Web server 400 error ...
show more
| [Dangerous/Brazil] Aggressive IP 34.95.244.45 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
๐ฌ๐ง
blik2108
2026-08-27 04:58:53
(13 hours ago)
beta.sleepylizard.com:443 34.95.244.45 - - [27/Aug/2026:05:58:48 +0100] "GET /site/.git/config HTTP/ ...
show more
beta.sleepylizard.com:443 34.95.244.45 - - [27/Aug/2026:05:58:48 +0100] "GET /site/.git/config HTTP/1.1" 404 5311 "-" "crusader-worker/1.0"
beta.sleepylizard.com:443 34.95.244.45 - - [27/Aug/2026:05:58:48 +0100] "GET /www/.git/config HTTP/1.1" 404 5311 "-" "crusader-worker/1.0"
beta.sleepylizard.com:443 34.95.244.45 - - [27/Aug/2026:05:58:48 +0100] "GET /.git/config HTTP/1.1" 404 5311 "-" "crusader-worker/1.0"
beta.sleepylizard.com:443 34.95.244.45 - - [27/Aug/2026:05:58:48 +0100] "GET /src/.git/config HTTP/1.1" 404 5311 "-" "crusader-worker/1.0"
beta.sleepylizard.com:443 34.95.244.45 - - [27/Aug/2026:05:58:48 +0100] "GET /app/.git/config HTTP/1.1" 404 5311 "-" "crusader-worker/1.0"
...
show less
Brute-Force
๐ง๐พ
lns.bz
2026-08-27 04:21:12
(14 hours ago)
Too many 404 requests [BY]
Web App Attack
Anonymous
2026-08-27 04:19:07
(14 hours ago)
[ns65.kdns.gr] httpd-config-scan: sites=www.borntoglow.gr; logs=/var/log/httpd/domains/borntoglow.gr ...
show more
[ns65.kdns.gr] httpd-config-scan: sites=www.borntoglow.gr; logs=/var/log/httpd/domains/borntoglow.gr.log; samples=/htdocs/.git/config | /app/.git/config | /wordpress/.git/config
show less
Hacking
Web App Attack
๐ณ๐ฑ
debestelapp
2026-08-27 03:50:07
(14 hours ago)
Web App Attack
๐ฉ๐ช
4server
2026-08-27 03:16:13
(15 hours ago)
[ThuAug2705:16:12.5892702026][security2:error][pid602951:tid602965][client34.95.244.45:0]ModSecurity ...
show more
[ThuAug2705:16:12.5892702026][security2:error][pid602951:tid602965][client34.95.244.45:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.eselectronic.ch.136-243-54-122.cpanel.site\"][uri\"/htdocs/.git/config\"][unique_id\"ao-r_MChhDNkdNCkq_L6FgAAAAM\"]
show less
Port Scan
Brute-Force
Web App Attack