π©πͺ
ddobko
2026-09-03 20:30:42
(2 hours ago)
Bad Web Bot
Web App Attack
π©πͺ
FD-IX
2026-09-03 15:06:42
(7 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 10:23:25
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 06:23:17.763107 2026] [security2:error] [pid 25591:tid 25591] [client 34.97.119.68:36638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "esendeniz.net"] [uri "/.git/config"] [unique_id "aplKlceHfxj1RiVcnJnv0QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΏπ¦
conure.sh
2026-09-03 09:51:43
(12 hours ago)
csagent: score 20.4: secrets grab x2, 404 noise floor x2; 1 domain(s) in 1s
Web App Attack
π³π΄
jad-abuse
2026-09-03 06:48:40
(15 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 12 hits.
show less
Web App Attack
π©πͺ
raph
2026-09-03 06:20:55
(16 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
π©πͺ
seal
2026-09-03 01:49:46
(20 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force
πΈπͺ
vaia.cloud
2026-09-03 01:35:02
(21 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 01:12:57
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:12:52.691892 2026] [security2:error] [pid 31881:tid 31881] [client 34.97.119.68:35374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.dodojuice.com"] [uri "/htdocs/.git/config"] [unique_id "apjJlLxivywsMxSWSQorHAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 16:09:12
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.97.119.68 (JP/Japan/68.119.97.34.bc. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.97.119.68 (JP/Japan/68.119.97.34.bc.googleusercontent.com)
show less
SQL Injection
π³π±
e.fierstra
2026-09-02 16:03:19
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 16:02:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 12:02:37.061850 2026] [security2:error] [pid 30137:tid 30137] [client 34.97.119.68:44864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.eurocs2.com"] [uri "/site/.git/config"] [unique_id "aphInc5AhEPn3kTw_k432wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 08:31:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:31:50.500451 2026] [security2:error] [pid 31157:tid 31157] [client 34.97.119.68:53072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roachranch.com"] [uri "/app/.git/config"] [unique_id "apfe9lmgjVoil_4jmhYEnwAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-02 07:55:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.119.68 (68.119.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:55:28.525503 2026] [security2:error] [pid 28482:tid 28482] [client 34.97.119.68:50772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rosemeadefarms.com"] [uri "/public/.git/config"] [unique_id "apfWcGhXqVU_Dq5vMJJTwgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-09-02 07:55:04
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack