๐ฌ๐ง
consul.to
2026-06-15 05:31:07
(5 minutes ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 04:51:36
(45 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:51:29.313908 2026] [security2:error] [pid 29070:tid 29070] [client 34.127.166.139:58008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rndplumbing.com"] [uri "/src/.git/config"] [unique_id "ai-E0ZxGa7XD2i3OuCCBDwAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 04:16:45
(1 hour ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฉ๐ช
bazter.pro
2026-06-15 01:24:22
(4 hours ago)
Fail2Ban: apache-ratelimit - 20 failures
Port Scan
Bad Web Bot
Web App Attack
๐ณ๐ฑ
juutis
2026-06-15 00:42:50
(4 hours ago)
Multiple WAF abuses - IP blocked
Hacking
Brute-Force
Web App Attack
๐ซ๐ท
โจ
2026-06-15 00:23:16
(5 hours ago)
Domain : myfamilytree.photos
Rule : config
2026-06-15 00:21:22 ***hidden-privacy*** GET /portal/.git ...
show more
Domain : myfamilytree.photos
Rule : config
2026-06-15 00:21:22 ***hidden-privacy*** GET /portal/.git/config - 443 - 34.127.166.139 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.87 Safari/537.36 OPR/54.0.2952.71 - myfamilytree.photos 403 501 0 1465 263 1316 - -
show less
Hacking
SQL Injection
๐ณ๐ฑ
Mangelot Hosting
2026-06-14 23:48:01
(5 hours ago)
(modsecurity) srv102 ModSecurity 34.127.166.139 (US/United States/139.166.127.34.bc.googleuserconten ...
show more
(modsecurity) srv102 ModSecurity 34.127.166.139 (US/United States/139.166.127.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 22:56:34
(6 hours ago)
20 attempts against mh-misbehave-ban on orcus
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:23:01
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:22:56.929287 2026] [security2:error] [pid 31810:tid 31810] [client 34.127.166.139:36278] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testo.kmelson.com"] [uri "/app/.git/config"] [unique_id "ai8pwNFL2wryivdRJaNleQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:53:11
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:53:07.706596 2026] [security2:error] [pid 10322:tid 10322] [client 34.127.166.139:34728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.timcsite.com.woosterclassof64.com"] [uri "/src/.git/config"] [unique_id "ai8iw7HzNLNTCydae5FRDgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:37:41
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:37:33.692313 2026] [security2:error] [pid 21389:tid 21389] [client 34.127.166.139:54630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jewers.org.crazycoin.net"] [uri "/api/.git/config"] [unique_id "ai8fHc6IkynuX5wZfrU7AQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
Francisco Vallejo
2026-06-14 13:53:28
(15 hours ago)
[Sun Jun 14 15:53:27.940174 2026] [core:info] [pid 4193621:tid 130567156766400] [client 34.127.166.1 ...
show more
[Sun Jun 14 15:53:27.940174 2026] [core:info] [pid 4193621:tid 130567156766400] [client 34.127.166.139:44412] AH00128: File does not exist: /var/www/franvallejo/src/.git/config
[Sun Jun 14 15:53:27.944213 2026] [core:info] [pid 4193621:tid 130566485677760] [client 34.127.166.139:44428] AH00128: File does not exist: /var/www/franvallejo/app/.git/config
[Sun Jun 14 15:53:27.958071 2026] [core:info] [pid 4193621:tid 130566527641280] [client 34.127.166.139:44440] AH00128: File does not exist: /var/www/franvallejo/backend/.git/config
[Sun Jun 14 15:53:27.977576 2026] [core:info] [pid 4193621:tid 130567165159104] [client 34.127.166.139:44444] AH00128: File does not exist: /var/www/franvallejo/frontend/.git/config
[Sun Jun 14 15:53:28.010849 2026] [core:info] [pid 4193621:tid 130566502463168] [client 34.127.166.139:44458] AH00128: File does not exist: /var/www/franvallejo/api/.git/config
...
show less
Brute-Force
SSH
๐ซ๐ท
dynamix
2026-06-14 12:45:01
(16 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 12:15:31
(17 hours ago)
20 attempts against mh-misbehave-ban on iron
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 10:17:22
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.127.166.139 (139.166.127.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:17:16.309902 2026] [security2:error] [pid 31110:tid 31158] [client 34.127.166.139:37322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "7sons.net"] [uri "/laravel/.git/config"] [unique_id "ai5_rKabjDFa-rGryQ29_AAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack