๐บ๐ธ
Equity Steward
2026-06-09 14:26:22
(3 hours ago)
Systematic automated scraping and endpoint enumeration against equitysteward.org. 1 offences recorde ...
show more
Systematic automated scraping and endpoint enumeration against equitysteward.org. 1 offences recorded. Trigger: Honeypot path accessed: /.git/config โ deliberately ignored robots.txt Disallow directive.. Canary ref: a3bbd90e-ad4.
show less
Web App Attack
Bad Web Bot
Anonymous
2026-06-09 12:17:16
(5 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:41:30
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:41:26.028123 2026] [security2:error] [pid 30017:tid 30017] [client 34.101.231.85:37206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "matchstic-branding.com"] [uri "/.git/config"] [unique_id "aif75nQGBrn-NG59Iar6MAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:58:09
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:58:03.083658 2026] [security2:error] [pid 29675:tid 29698] [client 34.101.231.85:40782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pmdwebenterprises.com"] [uri "/.git/config"] [unique_id "aifVmwe47lP6_7fRsVYmnwAAAVQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:33:30
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:33:24.116337 2026] [security2:error] [pid 16125:tid 16125] [client 34.101.231.85:46592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "foamnoodlejousting.com"] [uri "/.git/config"] [unique_id "aifP1NC3oAKyQgYekIO_7gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-09 05:42:02
(11 hours ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:33:28
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:33:22.733219 2026] [security2:error] [pid 32299:tid 32299] [client 34.101.231.85:33970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ads.searchenginesubmit.org"] [uri "/.git/config"] [unique_id "aielojJddby07qNZJ54VTgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:57:02
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:56:55.108905 2026] [security2:error] [pid 5134:tid 5149] [client 34.101.231.85:37728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "metastrata.com"] [uri "/.git/config"] [unique_id "aiedF3vjz2V3fuPGamSm5AAAAI0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 03:43:34
(13 hours ago)
34.101.231.85 - - [09/Jun/2026:03:43:34 +0000] "GET /.git/config HTTP/1.1" 302 484 "-" "Mozilla/5.0 ...
show more
34.101.231.85 - - [09/Jun/2026:03:43:34 +0000] "GET /.git/config HTTP/1.1" 302 484 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.2; en-US) AppleWebKit/532.9 (KHTML, like Gecko) Chrome/5.0.310.0 Safari/532.9"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-09 02:37:32
(14 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:13:13
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:13:08.320126 2026] [security2:error] [pid 3966:tid 3966] [client 34.101.231.85:53890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.glaswood.com"] [uri "/.git/config"] [unique_id "aidopI2G9MFI5IuXtaBYmQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 00:22:58
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:22:54.202550 2026] [security2:error] [pid 24512:tid 24512] [client 34.101.231.85:59382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jeffreylowenstein.thelowensteinfamily.com"] [uri "/.git/config"] [unique_id "aidc3jWnkmT1wYJ5W_bEKQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 20:24:09
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:24:04.813239 2026] [security2:error] [pid 4388:tid 4388] [client 34.101.231.85:58024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.lowcostbloodtest.org.bloodtestinchicago.com"] [uri "/.git/config"] [unique_id "aick5HavNLloI7EyBlPXagAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
interbiznw.com
2026-06-08 16:46:28
(1 day ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 15:52:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.101.231.85 (85.231.101.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 11:52:45.267851 2026] [security2:error] [pid 25085:tid 25085] [client 34.101.231.85:34948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pitigliano.montepulciano.org"] [uri "/.git/config"] [unique_id "aiblTb_F47lMAAKYRWkclwAAAGk"]
show less
Brute-Force
Bad Web Bot
Web App Attack