๐ท๐บ
sms.ru
2026-06-15 06:24:50
(1 hour ago)
/public/.git/config
Web App Attack
๐ฌ๐ง
foxxelabs
2026-06-15 06:01:36
(2 hours ago)
Automated report from FoxxeLabs Sentinel. Path probed: /shop/.git/config | Project: taca | Reason(s) ...
show more
Automated report from FoxxeLabs Sentinel. Path probed: /shop/.git/config | Project: taca | Reason(s): AbuseIPDB score: 100/100 | User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3879.0 Safar
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:06:42
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:06:37.225410 2026] [security2:error] [pid 11983:tid 12114] [client 34.131.218.4:49018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gafmboard.aafm.us"] [uri "/dashboard/.git/config"] [unique_id "ai-IXZvhI7JvnBu6cqXg7AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 03:23:02
(4 hours ago)
(modsecurity) srv104 ModSecurity 34.131.218.4 (IN/India/4.218.131.34.bc.googleusercontent.com): 10 i ...
show more
(modsecurity) srv104 ModSecurity 34.131.218.4 (IN/India/4.218.131.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 02:49:48
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:49:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:49:15.496095 2026] [security2:error] [pid 28567:tid 28567] [client 34.131.218.4:55620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.qed-consulting.co"] [uri "/src/.git/config"] [unique_id "ai9oKy2v0StQG3zU9aIrRQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
clamehost.it
2026-06-15 02:48:28
(5 hours ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-06-15 02:25:06
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:24:55.914941 2026] [security2:error] [pid 2498:tid 2498] [client 34.131.218.4:33328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "angelpc.net"] [uri "/v2/.git/config"] [unique_id "ai9id7HOlunN2d-HAluzNwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 01:34:16
(6 hours ago)
34.131.218.4 - - [15/Jun/2026:09:34:16 +0800] "GET /v3/.git/config HTTP/1.1" 404 196 "-" "Mozilla/5. ...
show more
34.131.218.4 - - [15/Jun/2026:09:34:16 +0800] "GET /v3/.git/config HTTP/1.1" 404 196 "-" "Mozilla/5.0 (X11; Linux i686; rv:28.0) Gecko/20100101 Firefox/28.0"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-15 01:32:05
(6 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:00:32
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:00:25.328232 2026] [security2:error] [pid 6630:tid 6630] [client 34.131.218.4:48204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "7livesahead.com"] [uri "/wordpress/.git/config"] [unique_id "ai9OqXbjiuRjQZMLbjVC9wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
bokumin.org
2026-06-15 00:57:07
(7 hours ago)
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/assets/.git/config"] [i ...
show more
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/assets/.git/config"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:25:55
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.131.218.4 (4.218.131.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:25:51.677510 2026] [security2:error] [pid 7717:tid 7717] [client 34.131.218.4:38900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rmhpolarracing.com.wolter-hausser.com"] [uri "/site/.git/config"] [unique_id "ai9Gj4bnnsih_zwtnKBqLAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
javierin
2026-06-15 00:24:27
(7 hours ago)
34.131.218.4 - centroasturiano.es - - [15/Jun/2026:00:24:26 +0000] "GET /app/.git/config HTTP/1.1" 4 ...
show more
34.131.218.4 - centroasturiano.es - - [15/Jun/2026:00:24:26 +0000] "GET /app/.git/config HTTP/1.1" 404 10010 "-" "Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/73.0.3683.103 Safari/537.36 OPR/60.0.3255.109"
34.131.218.4 - centroasturiano.es - - [15/Jun/2026:00:24:26 +0000] "GET /frontend/.git/config HTTP/1.1" 404 10017 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36 OPR/62.0.3331.88"
34.131.218.4 - centroasturiano.es - - [15/Jun/2026:00:24:26 +0000] "GET /v3/.git/config HTTP/1.1" 404 10016 "-" "Mozilla/5.0 (Linux; Android 9; SAMSUNG SM-G950F Build/PPR1.180610.011) AppleWebKit/537.36 (KHTML, like Gecko) SamsungBrowser/9.4 Chrome/67.0.3396.87 Mobile Safari/537.36"
34.131.218.4 - centroasturiano.es - - [15/Jun/2026:00:24:26 +0000] "GET /shop/.git/config HTTP/1.1" 404 10016 "-" "Mozilla/5.0 (Linux; Android 7.0; HUAWEI VNS-L31) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 00:08:03
(8 hours ago)
Excessive multi-domain requests
Brute-Force