๐ง๐ช
sid3windr
2026-06-09 21:37:17
(1 week ago)
GET /.git/config (Tarpitted for 1d15h8m35s, wasted 8.06MB)
Web App Attack
๐ฉ๐ช
Blexyel
2026-06-09 14:58:41
(1 week ago)
34.101.194.80 - - [09/Jun/2026:16:58:41 +0200] "GET /.git/config HTTP/1.1" 302 57 "-" "Mozilla/5.0 ( ...
show more
34.101.194.80 - - [09/Jun/2026:16:58:41 +0200] "GET /.git/config HTTP/1.1" 302 57 "-" "Mozilla/5.0 (Linux; Android 8.0.0; RNE-L21) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ฌ๐ง
Axel
2026-06-09 14:07:24
(1 week ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-09 13:52:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:52:15.380103 2026] [security2:error] [pid 19278:tid 19278] [client 34.101.194.80:44218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jikishin-kai.org"] [uri "/.git/config"] [unique_id "aigajxNc8q3FCIQFAxdtqQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:17:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:17:24.293526 2026] [security2:error] [pid 31476:tid 31527] [client 34.101.194.80:52972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.transiit.org"] [uri "/.git/config"] [unique_id "aigEVF5OIzlw-dKcbuWgogAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:49:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:48:57.964556 2026] [security2:error] [pid 23212:tid 23212] [client 34.101.194.80:36712] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web45.dnchosting.com"] [uri "/.git/config"] [unique_id "aifvmfX8feM6ggJv1hyCRgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:09:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:09:01.724229 2026] [security2:error] [pid 10744:tid 10744] [client 34.101.194.80:59412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fabandco.com"] [uri "/.git/config"] [unique_id "aifYLbO46FenJCqwV9OdNQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:57:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:57:24.881792 2026] [security2:error] [pid 21824:tid 21824] [client 34.101.194.80:54362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.dcmillerjr.com"] [uri "/.git/config"] [unique_id "aie5VILxfg-viCzOSCjOowAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-06-09 06:49:39
(1 week ago)
Probing for .git:
34.101.194.80 - - [09/Jun/2026:08:38:36 +0200] "GET /.git/config HTTP/1.1" 403 146 ...
show more
Probing for .git:
34.101.194.80 - - [09/Jun/2026:08:38:36 +0200] "GET /.git/config HTTP/1.1" 403 146 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_3_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) GSA/80.0.262003652 Mobile/16F203 Safari/604.1"
show less
Web App Attack
๐ฉ๐ฐ
RhQM
2026-06-09 06:03:02
(1 week ago)
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
4server
2026-06-09 04:24:57
(1 week ago)
[TueJun0906:24:54.0304272026][security2:error][pid2328474:tid2328641][client34.101.194.80:0]ModSecur ...
show more
[TueJun0906:24:54.0304272026][security2:error][pid2328474:tid2328641][client34.101.194.80:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mood4apps.com\"][uri\"/.git/config\"][unique_id\"aieVlqrYHhUkULepoYD-vQAAAQs\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 04:16:17
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.101.194.80 (ID/Indonesia/80.194.10 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.101.194.80 (ID/Indonesia/80.194.101.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 00:56:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:56:49.975993 2026] [security2:error] [pid 28983:tid 28983] [client 34.101.194.80:42992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cffragrances.iee-usa.com"] [uri "/.git/config"] [unique_id "aidk0XDqYIDxJi9o6HyulgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
oisecnet
2026-06-08 21:02:43
(1 week ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-06-08. 1624 requests from thi ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-06-08. 1624 requests from this IP.
show less
Brute-Force
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-06-08 20:39:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.194.80 (80.194.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:39:30.553529 2026] [security2:error] [pid 8835:tid 8835] [client 34.101.194.80:51826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.iconbizpromo.com"] [uri "/.git/config"] [unique_id "aicoglz3Ggt7nPBh34olbQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack