๐ซ๐ท
โจ
2026-06-15 00:02:13
(1 hour ago)
Domain : adorabilethai.it
Rule : config
2026-06-14 23:59:53 ***hidden-privacy*** GET /v2/.git/config ...
show more
Domain : adorabilethai.it
Rule : config
2026-06-14 23:59:53 ***hidden-privacy*** GET /v2/.git/config - 443 - 34.131.166.71 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_4) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36 - adorabilethai.it 404 8 0 313 256 381 - -
show less
Hacking
SQL Injection
๐ณ๐ฟ
Antinson
2026-06-14 23:49:43
(1 hour ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-14 23:13:33
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:13:27.670027 2026] [security2:error] [pid 3755:tid 3755] [client 34.131.166.71:40908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwetworld.com"] [uri "/app/.git/config"] [unique_id "ai81lzkZEE7RpXFdp80tJAAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-14 22:50:03
(2 hours ago)
suspicious request in access.log
Web App Attack
๐ท๐ด
iulianh
2026-06-14 22:16:26
(3 hours ago)
*
Brute-Force
SSH
๐จ๐ญ
Origon
2026-06-14 21:24:18
(4 hours ago)
http-sensitive-files - IP: 34.131.166.71 - time="2026-06-14T23:24:17+02:00" level=info msg="(555f66 ...
show more
http-sensitive-files - IP: 34.131.166.71 - time="2026-06-14T23:24:17+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.131.166.71 (IN/396982) : 4h ban on Ip 34.131.166.71" module=db
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:17:39
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:17:36.516701 2026] [security2:error] [pid 2392:tid 2392] [client 34.131.166.71:43348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aics.alitcogroup.com"] [uri "/assets/.git/config"] [unique_id "ai8acD2wXo7aMCHrHudv-QAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nyt
2026-06-14 20:50:39
(4 hours ago)
Sensitive File Probe
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 15:35:58
(9 hours ago)
20 attempts against mh_ha-misbehave-ban on crop
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐ฐ
i553041
2026-06-14 14:37:41
(10 hours ago)
34.131.166.71 - - [14/Jun/2026:22:37:40 +0800] "GET /assets/.git/config HTTP/1.1" 401 0 "-" "Mozilla ...
show more
34.131.166.71 - - [14/Jun/2026:22:37:40 +0800] "GET /assets/.git/config HTTP/1.1" 401 0 "-" "Mozilla/5.0 (Linux; Android 8.0.0; Pixel XL Build/OPR6.170623.012) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.107 Mobile Safari/537.36" "-"
34.131.166.71 - - [14/Jun/2026:22:37:40 +0800] "GET /build/.git/config HTTP/1.1" 401 0 "-" "Mozilla/5.0 (Linux; Android 8.1.0; ZB602KL) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36" "-"
34.131.166.71 - - [14/Jun/2026:22:37:40 +0800] "GET /dist/.git/config HTTP/1.1" 401 0 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 YaBrowser/19.7.0.1990 Yowser/2.5 Safari/537.36" "-"
34.131.166.71 - - [14/Jun/2026:22:37:40 +0800] "GET /portal/.git/config HTTP/1.1" 401 0 "-" "Mozilla/5.0 (Linux; Android 8.1.0; Redmi 6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.99 Mobile Safari/537.36" "-"
34.131.166.71 - - [14/Jun/2026:22:37:40 +0800] "GET /admin/.
...
show less
Brute-Force
SSH
๐ณ๐ฑ
Savvii
2026-06-14 12:01:43
(13 hours ago)
20 attempts against mh-misbehave-ban on pea
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 10:20:00
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 06:19:54.875199 2026] [security2:error] [pid 6692:tid 6692] [client 34.131.166.71:37392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.agingworkforcenews.neathridge.com"] [uri "/.git/config"] [unique_id "ai6ASmPWMiC1gwXhf4lImAAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-14 10:05:17
(15 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ซ๐ท
masterguru
2026-06-14 10:04:23
(15 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 07:34:44
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.166.71 (71.166.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 03:34:41.299182 2026] [security2:error] [pid 8320:tid 8320] [client 34.131.166.71:42410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asurprisinglittletown.com"] [uri "/src/.git/config"] [unique_id "ai5ZkTP2Cy8peB8VQQq5cgAAAF4"]
show less
Brute-Force
Bad Web Bot
Web App Attack