๐ณ๐ฑ
Site.eu
2026-06-16 13:36:14
(2 days ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:05
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ซ๐ท
pm33
2026-06-15 04:01:54
(3 days ago)
Excessive crawling HTTP 404
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:44:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.118.175.252 (252.175.118.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.175.252 (252.175.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:44:52.206409 2026] [security2:error] [pid 6603:tid 6603] [client 34.118.175.252:40598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "delicatessefoods.com"] [uri "/.git/config"] [unique_id "ai91NFIG3MWi21dBmijf8QAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 03:27:16
(3 days ago)
[server.dsamoodle.de] httpd-suspicious-path: sites=global; logs=/var/log/nginx/access.log; samples=/ ...
show more
[server.dsamoodle.de] httpd-suspicious-path: sites=global; logs=/var/log/nginx/access.log; samples=/admin/.git/config | /web/.git/config | /site/.git/config
show less
Hacking
Web App Attack
Anonymous
2026-06-15 03:25:25
(3 days ago)
34.118.175.252 - - [15/Jun/2026:11:25:25 +0800] "GET /www/.git/config HTTP/1.1" 404 196 "-" "Mozilla ...
show more
34.118.175.252 - - [15/Jun/2026:11:25:25 +0800] "GET /www/.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_3_2 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.1.1 Mobile/15E148 Safari/604.1"
34.118.175.252 - - [15/Jun/2026:11:25:25 +0800] "GET /v1/.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3876.0 Safari/537.36"
34.118.175.252 - - [15/Jun/2026:11:25:25 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.90 Safari/537.36"
34.118.175.252 - - [15/Jun/2026:11:25:25 +0800] "GET /v3/.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (SymbianOS/9.1; U; de) AppleWebKit/413 (KHTML, like Gecko) Safari/413"
34.118.175.252 - - [15/Jun/2026:11:25:25 +0800] "GET /htdocs/.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (Symbian/3; Series60/5.2 NokiaE7-00/010.016; Profile/MIDP-2.1 Configuration
...
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
YF
2026-06-15 03:05:10
(3 days ago)
404 errors Vulnerability scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:59:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.118.175.252 (252.175.118.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.175.252 (252.175.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:59:22.049749 2026] [security2:error] [pid 21785:tid 21803] [client 34.118.175.252:51808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.coloradomohs.aafm.us"] [uri "/.git/config"] [unique_id "ai9qinTHA19gh09tBXHp7wAAAY4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 02:40:20
(3 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-15 02:15:24
(3 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
ruusvuu
2026-06-15 02:14:26
(3 days ago)
Automated abuse report: 25 attack/probe requests from Google LLC / CA.
Targeted paths: /html/.git/co ...
show more
Automated abuse report: 25 attack/probe requests from Google LLC / CA.
Targeted paths: /html/.git/config, /app/.git/config, /backend/.git/config, /v2/.git/config, /v1/.git/config.
Sample log lines:
[dydyk] 2026-06-15T02:14:24.116Z 34.118.175.252 GET /laravel/.git/config 404 31ms -
[dydyk] 2026-06-15T02:14:24.118Z 34.118.175.252 GET /symfony/.git/config 404 18ms -
[dydyk] 2026-06-15T02:14:24.119Z 34.118.175.252 GET /code/.git/config 404 13ms -
Detected by an automated web-server log monitor.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:52:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.118.175.252 (252.175.118.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.118.175.252 (252.175.118.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:52:30.820023 2026] [security2:error] [pid 20247:tid 20247] [client 34.118.175.252:35520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sipa.com.hk"] [uri "/app/.git/config"] [unique_id "ai9a3g6kud_blX3PnJks6AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-15 01:35:42
(3 days ago)
Unauthorized access to webpage admin
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 01:30:56
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-15 01:02:02
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack