๐ง๐ช
cmbplf
2026-06-15 10:35:55
(3 days ago)
1.639 requests with url.path */.git/config
1.639 requests with url.path *.git/*
Brute-Force
Bad Web Bot
Anonymous
2026-06-15 09:52:08
(3 days ago)
34.14.158.76 - - [15/Jun/2026:09:52:06 +0000] "GET /portal/.git/config HTTP/1.1" 302 4727 "-" "Mozil ...
show more
34.14.158.76 - - [15/Jun/2026:09:52:06 +0000] "GET /portal/.git/config HTTP/1.1" 302 4727 "-" "Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.1.2) Gecko/20090803 Ubuntu/9.04 (jaunty) Shiretoko/3.5.2"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-15 09:39:35
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
Dominik Lysiak
2026-06-15 08:52:43
(3 days ago)
34.14.158.76 - - [15/Jun/2026:10:52:42 +0200] "GET /.git/config HTTP/1.1" 401 142 "-" "Mozilla/5.0 ( ...
show more
34.14.158.76 - - [15/Jun/2026:10:52:42 +0200] "GET /.git/config HTTP/1.1" 401 142 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.100 Safari/537.36"
34.14.158.76 - - [15/Jun/2026:10:52:42 +0200] "GET /symfony/.git/config HTTP/1.1" 401 142 "-" "Mozilla/5.0 (Linux; Android 5.1.1; Nexus 7 Build/LMY47V) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/43.0.2357.78 Safari/537.36 OPR/30.0.1856.93524"
34.14.158.76 - - [15/Jun/2026:10:52:43 +0200] "GET /wp-content/.git/config HTTP/1.1" 401 142 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:25:34
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:25:27.110525 2026] [security2:error] [pid 12757:tid 12757] [client 34.14.158.76:47056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.adamsclothiers.com"] [uri "/static/.git/config"] [unique_id "ai-29z8fOeh5DwRqBDyWdQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 08:12:28
(3 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:51:47
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:51:40.553893 2026] [security2:error] [pid 10076:tid 10076] [client 34.14.158.76:46178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "filardi.org"] [uri "/build/.git/config"] [unique_id "ai-g_L_QwYx03oK185vj_AAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 06:32:20
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฏ๐ต
bokumin.org
2026-06-15 05:41:33
(3 days ago)
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/api/.git/config"] [id " ...
show more
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/api/.git/config"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 04:14:10
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:14:04.221101 2026] [security2:error] [pid 27067:tid 27067] [client 34.14.158.76:50582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ruizpuche.com"] [uri "/web/.git/config"] [unique_id "ai98DEcVuCsEl98n_6gK0wAAAIY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:29:41
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:29:37.973333 2026] [security2:error] [pid 351:tid 949] [client 34.14.158.76:40876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jaimeroberts.newleafpro.com"] [uri "/app/.git/config"] [unique_id "ai9xoU5f0HDLvmEQ0r8cCAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-15 03:15:52
(3 days ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
mnsf
2026-06-15 03:05:52
(3 days ago)
Abuse Detected (29)
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-06-15 02:26:05
(3 days ago)
[MonJun1504:25:59.3364822026][security2:error][pid3433961:tid3433970][client34.14.158.76:0]ModSecuri ...
show more
[MonJun1504:25:59.3364822026][security2:error][pid3433961:tid3433970][client34.14.158.76:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"spazi-web-hosting.artisteer-italia.org\"][uri\"/.git/config\"][unique_id\"ai9it_VHKKAbdH2Vu-ghbwAAAAU\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:24:13
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.14.158.76 (76.158.14.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:24:06.919408 2026] [security2:error] [pid 32229:tid 32229] [client 34.14.158.76:36596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "portfolioboosterllc.myhomeflyer.com"] [uri "/api/.git/config"] [unique_id "ai9UNonkjBuz7ku0g7uaagAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack