|
π¨π
TheCoon
|
|
Automated: Credential theft attempt - JSON bomb served
|
Web App Attack
Hacking
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 02:53:54.045270 2026] [security2:error] [pid 16961:tid 16961] [client 34.104.235.211:34160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.markgebhard.net"] [uri "/.git/config"] [unique_id "ahaVAhL0uFpQ_TG3Hwh-gQAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 01:52:20.105203 2026] [security2:error] [pid 23221:tid 23221] [client 34.104.235.211:41434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.aaronnosan.com"] [uri "/.git/config"] [unique_id "ahaGlIQXW-9qcQbvn9wGJQAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 00:53:35.938470 2026] [security2:error] [pid 20906:tid 20919] [client 34.104.235.211:46772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.myrtlebeachdiet.com"] [uri "/.git/config"] [unique_id "ahZ4z9rXaRzF5k8-2IX1EwAAAIs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π΅π±
Roper123
|
|
Web app attack
|
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 23:20:25.780573 2026] [security2:error] [pid 24344:tid 24344] [client 34.104.235.211:37178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.superiorhandyman.net"] [uri "/.git/config"] [unique_id "ahZi-cxBWAmEbubif2YfggAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:40:37.807895 2026] [security2:error] [pid 590:tid 590] [client 34.104.235.211:54374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mkdesignndetailing.com"] [uri "/.git/config"] [unique_id "ahZZpUsJBtmbPGxVptNXLgAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:11:46.335063 2026] [security2:error] [pid 17162:tid 17162] [client 34.104.235.211:46158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.graydortmotors.com"] [uri "/.git/config"] [unique_id "ahZS4gxCHi1NKpi7tPizmwAAADo"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
ππΊ
bcsaba
|
|
Probing for .git:
34.104.235.211 - - [27/May/2026:02:49:15 +0200] "GET /.git/config HTTP/1.1" 400 63 ...
show more
Probing for .git:
34.104.235.211 - - [27/May/2026:02:49:15 +0200] "GET /.git/config HTTP/1.1" 400 632 "-" "Mozilla/5.0 (Linux; Android 6.0; HTC 2PXH3) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.157 Mobile Safari/537.36"
show less
|
Web App Attack
|
|
|
πΊπΈ
NXTwoThou
|
|
/.git/config
|
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 18:30:40.185950 2026] [security2:error] [pid 30473:tid 30493] [client 34.104.235.211:56784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.victorchiarizia.com"] [uri "/.git/config"] [unique_id "ahYfEA0ebRv1HxOg76F01wAAAFI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
πΊπΈ
mashamal
|
|
Vulnerability Probe
...
|
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 17:52:24.072523 2026] [security2:error] [pid 8861:tid 8861] [client 34.104.235.211:43204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.amazingwelding.com"] [uri "/.git/config"] [unique_id "ahYWGPtFZ_9p7J0PfRS2wAAAAAE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
π³π±
ParaBug
|
|
34.104.235.211 - - [26/May/2026:23:38:25 +0200] "GET /.git/config HTTP/1.1" 301 3111 "-" "Mozilla/5. ...
show more
34.104.235.211 - - [26/May/2026:23:38:25 +0200] "GET /.git/config HTTP/1.1" 301 3111 "-" "Mozilla/5.0 (Linux; Android 8.0.0; moto e5 cruise Build/OCPS27.91-157-12) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/68.0.3440.91 Mobile Safari/537.36"
...
show less
|
Phishing
Brute-Force
Web App Attack
|
|
|
πΊπΈ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.104.235.211 (211.235.104.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 17:02:25.595119 2026] [security2:error] [pid 26498:tid 26498] [client 34.104.235.211:33714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.stinnetthomeinspection.com"] [uri "/.git/config"] [unique_id "ahYKYSjwpyckM8uHBJThIwAAAAA"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|