๐ฉ๐ช
altenglaner
2026-10-01 08:35:46
(10 minutes ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 08:30:33
(15 minutes ago)
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 04:30:28.570267 2026] [security2:error] [pid 13504:tid 13504] [client 134.209.221.52:56978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "register-yacht-greece.com"] [uri "/.git/config"] [unique_id "ar4aJPXgxUe0b50fCVhT7AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-01 07:40:31
(1 hour ago)
156 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐ฉ๐ช
big-cloud.nl
2026-10-01 06:59:33
(1 hour ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 05:40:58
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:40:54.698276 2026] [security2:error] [pid 18152:tid 18152] [client 134.209.221.52:38434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jesusthechristministry.org"] [uri "/.git/config"] [unique_id "ar3yZsPcNTQk8nSdDTLV0gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-10-01 05:34:17
(3 hours ago)
Secret file probe | method: GET | path: /.git/config | ua: Mozilla/5.0 (X11; Linux x86_64) AppleWebK ...
show more
Secret file probe | method: GET | path: /.git/config | ua: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 05:21:53
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:21:50.468423 2026] [security2:error] [pid 7723:tid 7723] [client 134.209.221.52:55136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pharmaceuticalsalescareerhub.com"] [uri "/.git/config"] [unique_id "ar3t7p65uoICu0It7UjDFgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-01 05:12:13
(3 hours ago)
[ti-tinov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 13 ...
show more
[ti-tinov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 134.209.221.52 - - \[01/Oct/2026:07:11:53 +0200\] "GET /.git/config HTTP/1.1" 301 571 "-" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-01 04:51:54
(3 hours ago)
[cb-03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 134.209.221.52 - - [01/Oct/2026:06:51:37 +0200] "GET /.git/config HTTP/1.1" 301 517 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 04:42:20
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 134.209.221.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 00:42:16.095689 2026] [security2:error] [pid 22903:tid 22903] [client 134.209.221.52:56854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "endoperfect.com"] [uri "/.git/config"] [unique_id "ar3kqH1dxiA_1d__77L5vAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฑ
spd.co.il
2026-06-05 17:01:29
(3 months ago)
Web application attack detected
Hacking
Web App Attack
๐บ๐ธ
RAP
2025-12-31 01:11:48
(9 months ago)
2025-12-31 01:11:48 UTC Unauthorized activity to TCP port 8089. Web App
Port Scan
Web App Attack
Anonymous
2025-04-12 09:16:42
(1 year ago)
DNS AXFR Attempt
DNS Compromise
๐ฟ๐ฆ
IrisFlower
2022-10-18 04:50:55
(3 years ago)
Unauthorized connection attempt detected from IP address 134.209.221.52 to port 80 [J]
Port Scan
Hacking
๐ฟ๐ฆ
IrisFlower
2022-10-18 04:30:49
(3 years ago)
Unauthorized connection attempt detected from IP address 134.209.221.52 to port 80 [J]
Port Scan
Hacking