๐จ๐ฟ
akac
2026-09-21 05:03:15
(1 week ago)
Web vulnerability scanning: HTTP/1.1 GET /.git/config
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
sojan
2026-09-21 00:53:16
(1 week ago)
34.165.230.86 - - [21/Sep/2026:02:53:15 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux ...
show more
34.165.230.86 - - [21/Sep/2026:02:53:15 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.165.230.86 - - [21/Sep/2026:02:53:15 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.165.230.86 - - [21/Sep/2026:02:53:15 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 00:46:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 20:46:31.099213 2026] [security2:error] [pid 21631:tid 21631] [client 34.165.230.86:44498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cook-islands-boat-registration.com"] [uri "/.git/config"] [unique_id "arB-ZxZH5TbktZB6A8YZVAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
mgarofano80
2026-09-20 23:55:34
(1 week ago)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:52:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:52:10.826943 2026] [security2:error] [pid 4461:tid 4461] [client 34.165.230.86:49898] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "convoyforkids.com"] [uri "/.git/config"] [unique_id "arBxqrFKQfy_q0rvGq8uMgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 23:18:28
(1 week ago)
Blocked by ModSec and CSF
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-20 23:17:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:16:53.278656 2026] [security2:error] [pid 3325:tid 3325] [client 34.165.230.86:32900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conveyorizedovens.com"] [uri "/.git/config"] [unique_id "arBpZQ4L7pxyAIpWw9wwJgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-20 22:58:36
(1 week ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.165.230.86 - - [21/Sep/2026:00:58:35 +0200] "GET /.git/config HTTP/1.1" 301 652 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:39:07
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.230.86 (86.230.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:39:04.403877 2026] [security2:error] [pid 32151:tid 32151] [client 34.165.230.86:47686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conversationtalentnetwork.com"] [uri "/.git/config"] [unique_id "arBSeL7khXgjos-IhPFuqQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-20 21:04:44
(1 week ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-20 20:41:44
(1 week ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-20 20:41 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-20 18:50:12
(1 week ago)
Web App Attack
๐ง๐ท
dominioz
2026-09-20 18:42:05
(1 week ago)
2026-09-20 18:41:13 GET /.git/config - - 34.165.230.86 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+Appl ...
show more
2026-09-20 18:41:13 GET /.git/config - - 34.165.230.86 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5300
2026-09-20 18:41:13 GET /.env - - 34.165.230.86 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5093
2026-09-20 18:41:14 GET /.env.local - - 34.165.230.86 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5105
2026-09-20 18:41:16 GET /.env.production - - 34.165.230.86 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5115
2026-09-20 18:41:17 GET /.env.staging - - 34.165.230.86 HTTP/1.1 Mozilla/5.0+(X11;+Linux+x86_64)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 404 5109
...
show less
Web App Attack
๐บ๐ธ
abuse-opdc
2026-09-20 17:15:42
(1 week ago)
Malicious HTTP requests matching injection/exploit signatures.
Web App Attack
Brute-Force
Anonymous
2026-09-20 17:14:11
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack