๐ฎ๐น
Inartis
2026-09-03 13:51:07
(2 hours ago)
34.17.32.127 - - [03/Sep/2026:15:51:01 +0200] "GET /.git/config HTTP/1.1" 403 267 "-" "Mozilla/5.0 ( ...
show more
34.17.32.127 - - [03/Sep/2026:15:51:01 +0200] "GET /.git/config HTTP/1.1" 403 267 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.17.32.127 - - [03/Sep/2026:15:51:04 +0200] "GET /.env HTTP/1.1" 403 267 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.17.32.127 - - [03/Sep/2026:15:51:05 +0200] "GET /.env.local HTTP/1.1" 403 5618 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ท
dominioz
2026-09-03 12:56:47
(3 hours ago)
2026-09-03 12:55:49 GET /.git/config - - 34.17.32.127 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+ ...
show more
2026-09-03 12:55:49 GET /.git/config - - 34.17.32.127 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 554
2026-09-03 12:55:49 GET /.env - - 34.17.32.127 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 540
2026-09-03 12:56:04 GET /app/.env - - 34.17.32.127 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 548
2026-09-03 12:56:04 GET /apps/.env - - 34.17.32.127 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 550
...
show less
Web App Attack
Anonymous
2026-09-03 09:39:30
(6 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฎ๐น
VHosting
2026-09-03 09:35:03
(6 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 08:16:32
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.32.127 (127.32.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.32.127 (127.32.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:16:27.556985 2026] [security2:error] [pid 11492:tid 11492] [client 34.17.32.127:44902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cultureal.com"] [uri "/.git/config"] [unique_id "apks2-3aSsRDJKtwnweBFgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-03 07:56:37
(8 hours ago)
[03/Sep/2026:10:56:37 +0300] -- 34.17.32.127 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[03/Sep/2026:10:56:37 +0300] -- 34.17.32.127 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 07:38:48
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.32.127 (127.32.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.32.127 (127.32.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 03:38:43.166337 2026] [security2:error] [pid 25793:tid 25816] [client 34.17.32.127:54220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "culturallyyours.org.lamco.us"] [uri "/.git/config"] [unique_id "apkkA6zyVfasbpYrEm8BNwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 07:10:02
(9 hours ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
masterguru
2026-09-03 06:37:52
(9 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-09-03 06:13:52
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 06:10:06
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.17.32.127 (127.32.17.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.17.32.127 (127.32.17.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 02:09:58.556766 2026] [security2:error] [pid 24954:tid 24954] [client 34.17.32.127:58668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cultiplant.com.menagri.com"] [uri "/.git/config"] [unique_id "apkPNgu-Du7FxFmC5KjBvwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-03 04:40:08
(11 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-03 04:18:14
(12 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ท
Octopuce
2026-09-03 03:47:48
(12 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ฉ๐ช
LRob
2026-09-03 03:38:51
(12 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-03 03:38 UTC
show less
Hacking
Web App Attack