๐บ๐ธ
entangled_mongoose
2026-06-15 09:21:54
(8 hours ago)
Probed /wp-content/.git/config.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:36:13
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:36:07.530130 2026] [security2:error] [pid 10664:tid 10664] [client 34.40.255.188:39648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sigridsnaturalfoods.com"] [uri "/static/.git/config"] [unique_id "ai-5d5nqh_6YJ05AkM3oUQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 08:32:05
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 07:34:23
(10 hours ago)
1.339 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 07:29:17
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:29:09.971567 2026] [security2:error] [pid 12195:tid 12195] [client 34.40.255.188:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abdulhameeds.art"] [uri "/.git/config"] [unique_id "ai-pxcVG2ElVI2YBfOBPKgAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Smish
2026-06-15 07:13:12
(10 hours ago)
HONEYPOT HIT --> Fail2ban time=1781507590 log=2026-06-15T08:13:10+01:00 ip=34.40.255.188 host=info.s ...
show more
HONEYPOT HIT --> Fail2ban time=1781507590 log=2026-06-15T08:13:10+01:00 ip=34.40.255.188 host=info.smishcraft.com method=GET uri="/admin/.git/config" status=404 ua="Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.100 Safari/537.36" ref="-" rid=14326069df2602e0d932c9b3bd75faa0
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:07:19
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:07:14.433278 2026] [security2:error] [pid 26551:tid 26551] [client 34.40.255.188:49540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gbcwoodbine.org"] [uri "/web/.git/config"] [unique_id "ai-koqJ0vJ5aAVZ8bVDaSQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 06:04:18
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:04:14.989834 2026] [security2:error] [pid 32756:tid 32756] [client 34.40.255.188:39878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wraycurtis.com.greighhouse.com"] [uri "/src/.git/config"] [unique_id "ai-V3luu5YmoYLvHXKbg3QAAAGo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:20:58
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:20:49.893772 2026] [security2:error] [pid 16868:tid 16868] [client 34.40.255.188:51792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.templeantiques.org"] [uri "/.git/config"] [unique_id "ai-Lscs5stWR3xf5Lzd_FgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-06-15 05:13:44
(12 hours ago)
30 attacks on VC URLs:
GET /dist/.git/config HTTP/1.1
Hacking
๐ฉ๐ช
Petros Stefanakis
2026-06-15 01:59:48
(16 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.40.255.188 (AU/Australia/188.255.40. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.40.255.188 (AU/Australia/188.255.40.34.bc.googleusercontent.com)
show less
SQL Injection
๐ซ๐ท
โจ
2026-06-15 01:56:13
(16 hours ago)
Domain : farmacistinetwork.medinforma.it
Rule : config
2026-06-15 01:54:53 ***hidden-privacy*** GET ...
show more
Domain : farmacistinetwork.medinforma.it
Rule : config
2026-06-15 01:54:53 ***hidden-privacy*** GET /src/.git/config - 443 - 34.40.255.188 HTTP/1.1 Mozilla/5.0 (Linux; Android 9; Redmi Note 6 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/75.0.3770.143 Mobile Safari/537.36 - farmacistinetwork.medinforma.it 404 8 0 1265 280 477 - -
show less
Hacking
SQL Injection
๐ณ๐ฑ
Mangelot Hosting
2026-06-15 01:38:59
(16 hours ago)
(modsecurity) srv102 ModSecurity 34.40.255.188 (AU/Australia/188.255.40.34.bc.googleusercontent.com) ...
show more
(modsecurity) srv102 ModSecurity 34.40.255.188 (AU/Australia/188.255.40.34.bc.googleusercontent.com): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:32:16
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.40.255.188 (188.255.40.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:32:11.016039 2026] [security2:error] [pid 4638:tid 4638] [client 34.40.255.188:59690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shafoo.com"] [uri "/static/.git/config"] [unique_id "ai9WG4pIbaqGK3mBaFoz5AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
ivanbiagi7
2026-06-15 00:52:02
(17 hours ago)
(localhost/crowdsec) custom/appsec-escalation by ip 34.40.255.188 (AU/396982) : 4h ban on Ip 34.40.2 ...
show more
(localhost/crowdsec) custom/appsec-escalation by ip 34.40.255.188 (AU/396982) : 4h ban on Ip 34.40.255.188
show less
Web App Attack
Hacking