๐ง๐ช
cmbplf
2026-06-15 06:25:33
(10 minutes ago)
17.561 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐ท๐บ
DZBOT
2026-06-15 05:21:01
(1 hour ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
strxmpp
2026-06-15 04:59:14
(1 hour ago)
34.151.204.188 - - [15/Jun/2026:06:59:13 +0200] "GET /src/.git/config HTTP/1.1" 404 4641 "-" "Mozill ...
show more
34.151.204.188 - - [15/Jun/2026:06:59:13 +0200] "GET /src/.git/config HTTP/1.1" 404 4641 "-" "Mozilla/5.0 (iPhone; CPU iPhone OS 12_1 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Mobile/16B92 MicroMessenger/7.0.5(0x17000523) NetType/WIFI Language/zh_CN"
...
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 04:51:15
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:51:11.843109 2026] [security2:error] [pid 18975:tid 18996] [client 34.151.204.188:53942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.starwars.onernet.com"] [uri "/dist/.git/config"] [unique_id "ai-Ev64O3Z75KZgPGmB-yQAAAZE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 04:34:10
(2 hours ago)
apache-auth
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:36:04
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:35:58.082345 2026] [security2:error] [pid 20505:tid 20505] [client 34.151.204.188:32984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wpwlv.com"] [uri "/src/.git/config"] [unique_id "ai9zHsaKKIuWbD2BjEqryAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-06-15 02:29:19
(4 hours ago)
CMS/framework probe: 34.151.204.188 - - [15/Jun/2026:04:29:10 +0200] "GET /backend/.git/config HTTP/ ...
show more
CMS/framework probe: 34.151.204.188 - - [15/Jun/2026:04:29:10 +0200] "GET /backend/.git/config HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_14_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/74.0.3729.169 YaBrowser/19.6.0.1583 Yowser/2.5 Safari/537.36" asn=396982 org="Google LLC" country=BR
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:09:56
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:09:48.804571 2026] [security2:error] [pid 9025:tid 9031] [client 34.151.204.188:45206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.greendermatology.net.oplconnect.com"] [uri "/blog/.git/config"] [unique_id "ai9e7CS3-05itL_zvYKHgwAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
IVski
2026-06-14 22:27:22
(8 hours ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:01:48
(8 hours ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking
๐ณ๐ฑ
e.fierstra
2026-06-14 21:28:41
(9 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 21:00:13
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.151.204.188 (188.204.151.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:00:08.002890 2026] [security2:error] [pid 32610:tid 32610] [client 34.151.204.188:60066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.armorcorp.gulftelecom.com"] [uri "/html/.git/config"] [unique_id "ai8WWC7LsIjut-RVgQsiJgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
s@ch@
2026-06-14 12:45:02
(17 hours ago)
Jail: plesk-modsecurity | Web application attack (Plesk ModSecurity)
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 12:34:01
(18 hours ago)
20 attempts against mh-misbehave-ban on pf102968
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-06-14 03:21:24
(1 day ago)
Web scanning / probing for vulnerable paths | URL: /site/.git/config | Evidence: turibolsa.com 34.15 ...
show more
Web scanning / probing for vulnerable paths | URL: /site/.git/config | Evidence: turibolsa.com 34.151.204.188 - - [14/Jun/2026:05:21:03 +0200] \"GET /site/.git/config HTTP/1.1\" 404 20370 \"-\" \"BlackBerry8320/4.2.2 Profile/MIDP-2.0 Configuration/CLDC-1.1 VendorID/100\" GEOIP_COUNTRY_CODE=BR | ASN: GOOGLE-CLOUD-PLATFORM | Country: BR
show less
Port Scan
Web App Attack