๐บ๐ฆ
URAN Publishing Service
2026-08-29 01:41:14
(2 days ago)
[29/Aug/2026:04:41:13 +0300] -- 34.156.90.152 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[29/Aug/2026:04:41:13 +0300] -- 34.156.90.152 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-29 01:38:56
(2 days ago)
cloudlinux2 fail2ban: 2026-08-29 03:34:34,332 fail2ban.filter [1478]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-29 03:34:34,332 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:34:34cloudlinux2 fail2ban: 2026-08-29 03:34:34,374 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:34:34cloudlinux2 fail2ban: 2026-08-29 03:34:34,305 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:34:34cloudlinux2 fail2ban: 2026-08-29 03:34:34,315 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:34:34cloudlinux2 fail2ban: 2026-08-29 03:34:34,295 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:34:34cloudlinux2 fail2ban: 2026-08-29 03:34:34,383 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:34:34cloudlinux2 fail2ban: 2026-08-29 03:34:34,453 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 34.156.90.152 - 2026-08-29 03:
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-29 01:28:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:28:50.615346 2026] [security2:error] [pid 10377:tid 10377] [client 34.156.90.152:41596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sp.cloudex.link"] [uri "/app/.git/config"] [unique_id "apI10h_wye2P8S6eM7HY1AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
mediarama.com
2026-08-29 01:18:38
(2 days ago)
Banned by Fail2Ban
Web App Attack
๐ฌ๐ง
consul.to
2026-08-29 01:17:03
(2 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
i-turnradio.nl
2026-08-29 01:14:30
(2 days ago)
2026-08-29 @ 03:14:30 (CET) ~ Blocked for trying to access: /public/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 01:10:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:10:53.063635 2026] [security2:error] [pid 3363342:tid 3363357] [client 34.156.90.152:38910] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "isa-energy.net"] [uri "/site/.git/config"] [unique_id "apIxnW-f09rsyFsPsuS53wAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:20:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:20:00.426723 2026] [security2:error] [pid 29806:tid 29872] [client 34.156.90.152:40982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cargowebstore.com"] [uri "/html/.git/config"] [unique_id "apIXoL4ky2dJ6hCaiSCVNAAAAIY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
london2038.com
2026-08-28 23:14:09
(2 days ago)
Probing for exploits
34.156.90.152 - - [29/Aug/2026:01:14:04 +0200] "GET /api/.git/config HTTP/1.1" ...
show more
Probing for exploits
34.156.90.152 - - [29/Aug/2026:01:14:04 +0200] "GET /api/.git/config HTTP/1.1" 422 0 "-" "crusader-worker/1.0"
34.156.90.152 - - [29/Aug/2026:01:14:04 +0200] "GET /www/.git/config HTTP/1.1" 422 0 "-" "crusader-worker/1.0"
show less
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-28 21:59:22
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-27.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
kosada.com
2026-08-28 20:42:37
(2 days ago)
Web vulnerability probing: /api/.git/config
Web App Attack
Anonymous
2026-08-28 19:24:51
(2 days ago)
[server.tmg.gr] httpd-config-scan: sites=www.kekmil.cy; logs=/var/log/httpd/domains/kekmil.cy.log; s ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.kekmil.cy; logs=/var/log/httpd/domains/kekmil.cy.log; samples=/backend/.git/config | /html/.git/config | /wordpress/.git/config
show less
Hacking
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-28 14:12:04
(3 days ago)
Try to access /backend/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 12:54:37
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.156.90.152 (152.90.156.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:54:29.014146 2026] [security2:error] [pid 1960:tid 1960] [client 34.156.90.152:50144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.investlocalinc.socialenterprise.net"] [uri "/src/.git/config"] [unique_id "apGFBcZojR6fI0oRWntwowAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-28 11:02:52
(3 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack