๐ณ๐ฟ
Antinson
2026-07-29 17:54:53
(4 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ง๐ช
cmbplf
2026-07-29 17:39:57
(4 hours ago)
1.401 requests with url.path *.git/*
1.328 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
interbiznw.com
2026-07-29 17:16:05
(5 hours ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 17:06:16
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.26.27 (27.26.19.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.26.27 (27.26.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 13:06:08.070655 2026] [security2:error] [pid 15075:tid 15075] [client 34.19.26.27:35882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.boardingatthewedge.com"] [uri "/.git/config"] [unique_id "amozAF-Ru95nRBS_37eFhwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-29 17:02:11
(5 hours ago)
Try to access /.git/config
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-29 16:58:56
(5 hours ago)
cloudlinux2 fail2ban: 2026-07-29 18:53:57,526 fail2ban.filter [1584]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-07-29 18:53:57,526 fail2ban.filter [1584]: INFO [plesk-modsecurity] Found 34.19.26.27 - 2026-07-29 18:53:57cloudlinux2 fail2ban: 2026-07-29 18:53:57,541 fail2ban.filter [1584]: INFO [plesk-modsecurity] Found 34.19.26.27 - 2026-07-29 18:53:57cloudlinux2 fail2ban: 2026-07-29 18:53:57,533 fail2ban.filter [1584]: INFO [plesk-modsecurity] Found 34.19.26.27 - 2026-07-29 18:53:57cloudlinux2 fail2ban: 2026-07-29 18:53:57,682 fail2ban.actions [1584]: NOTICE [plesk-modsecurity] Ban 34.19.26.27cloudlinux2 fail2ban: 2026-07-29 18:53:57,683 fail2ban.filter [1584]: INFO [recidive] Found 34.19.26.27 - 2026-07-29 18:53:57cloudlinux2 fail2ban: 2026-07-29 18:54:23,608 fail2ban.filter [1584]: INFO [plesk-wordpress] Found 2.57.168.9 - 2026-07-29 18:54:23cloudlinux2 fail2ban: 2026-07-29 18:54:19,304 fail2ban.filter [1584]: INFO [plesk-wordpress] Found 2.57.168.9 - 2026-07-29 18:54:18cloudlinux2 fail2ban: 2026-07-29 18:54:34,859 fa
show less
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-07-29 16:51:23
(5 hours ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 16:24:34
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.26.27 (27.26.19.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.26.27 (27.26.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 12:24:29.617963 2026] [security2:error] [pid 1960904:tid 1960904] [client 34.19.26.27:56996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.accinternational.net"] [uri "/.git/config"] [unique_id "amopPTjOhcf4rfXMwGY7_AAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
JustMeHere
2026-07-29 16:11:38
(6 hours ago)
[Wed Jul 29 12:11:32.960771 2026] [security2:error] [pid 910:tid 1012] [client 34.19.26.27:41068] Mo ...
show more
[Wed Jul 29 12:11:32.960771 2026] [security2:error] [pid 910:tid 1012] [client 34.19.26.27:41068] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "test2.yorknation.com"] [uri "/.git/config"] [unique_id "amomNG9KoIJqINSQ21BuPAAAAEE"]
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-07-29 16:05:34
(6 hours ago)
Abuse Detected (13)
Brute-Force
Web App Attack
๐ณ๐ฑ
bazter.pro
2026-07-29 15:48:08
(6 hours ago)
34.19.26.27 - - [29/Jul/2026:15:48:07 +0000] "GET /.git/config HTTP/1.1" 404 305 "-" "-"
...
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
SSH
๐ซ๐ฎ
inlink.ltd
2026-07-29 15:40:46
(6 hours ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 15:30:23
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.19.26.27 (27.26.19.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.19.26.27 (27.26.19.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 11:30:19.799947 2026] [security2:error] [pid 811801:tid 811847] [client 34.19.26.27:55360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "terraverde.us"] [uri "/.git/config"] [unique_id "amociyv9XUbHyL1lTV-80wAAAMs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-29 15:25:02
(7 hours ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
IVski
2026-07-29 15:18:08
(7 hours ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack