๐จ๐ญ
backslash
2026-06-10 13:42:01
(1 week ago)
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:38
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 16:06:14
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 12:06:09.218173 2026] [security2:error] [pid 30913:tid 30913] [client 34.40.100.171:44604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.secureonebank.com"] [uri "/.git/config"] [unique_id "aig58e2tNZRgaj_vWHIqGQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:35:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:35:12.194020 2026] [security2:error] [pid 6978:tid 6978] [client 34.40.100.171:57570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heubel-shaw.com.helpkccare.org"] [uri "/.git/config"] [unique_id "aigysAG5bfyE644bFVhr8wAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Axel
2026-06-09 11:04:02
(1 week ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ฆ๐บ
2000cn.com.au
2026-06-09 11:02:57
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-09 09:59:47
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:56:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:56:40.205332 2026] [security2:error] [pid 390:tid 390] [client 34.40.100.171:50266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qed-consulting.co"] [uri "/.git/config"] [unique_id "aifjWCDCVLglge7uJ80xFQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2026-06-09 07:55:08
(1 week ago)
tcp/443; Git configuration exposure attempt: "GET /.git/config" @ 2026-06-09T07:49:51Z [proxy]
Web App Attack
๐ฉ๐ช
Blexyel
2026-06-09 04:40:50
(1 week ago)
34.40.100.171 - - [09/Jun/2026:06:40:50 +0200] "GET /.git/config HTTP/1.1" 404 555 "-" "Mozilla/5.0 ...
show more
34.40.100.171 - - [09/Jun/2026:06:40:50 +0200] "GET /.git/config HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Linux; Android 9; SM-G975F) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36" "stream.pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 04:29:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.100.171 (171.100.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 00:29:18.404112 2026] [security2:error] [pid 6095:tid 6171] [client 34.40.100.171:50270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aaadatacom.digital4z.com"] [uri "/.git/config"] [unique_id "aieWnsiPxI8aJv9R3lPa4AAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2026-06-09 04:24:36
(1 week ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.git/config
Web App Attack
๐จ๐ญ
4server
2026-06-09 03:05:04
(1 week ago)
[TueJun0905:04:59.3355232026][security2:error][pid3223983:tid3224729][client34.40.100.171:0]ModSecur ...
show more
[TueJun0905:04:59.3355232026][security2:error][pid3223983:tid3224729][client34.40.100.171:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"stmconsulenze.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aieC22CdRa4PCMQHm41IqgAAARg\"]
show less
Hacking
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-09 01:56:26
(1 week ago)
dot file probe
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-06-09 00:13:28
(1 week ago)
Try to access /.git/config
Web App Attack