๐ง๐ช
sid3windr
2026-06-10 18:22:10
(14 hours ago)
GET /.git/config (Tarpitted for 1d15h8m28s, wasted 8.06MB)
Web App Attack
๐ง๐ท
Peregrine
2026-06-10 03:19:22
(1 day ago)
Fail2Ban Jail s2: tomcat-honeypot | Evidence: - 34.50.119.182 - - [08/Jun/2026:05:26:23 -0300] "GET ...
show more
Fail2Ban Jail s2: tomcat-honeypot | Evidence: - 34.50.119.182 - - [08/Jun/2026:05:26:23 -0300] "GET /.git/config HTTP/1.1" 404 414
show less
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:39
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 13:29:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 09:29:15.013953 2026] [security2:error] [pid 25565:tid 25565] [client 34.50.119.182:36444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emhelectric.com"] [uri "/.git/config"] [unique_id "aigVKwNsL5qgaph7LbUiSAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 12:35:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:35:19.335286 2026] [security2:error] [pid 4678:tid 4678] [client 34.50.119.182:36020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hawksnestgolfcourse.smilingorc.com"] [uri "/.git/config"] [unique_id "aigIh7HhvNvE4M6O0-mg-gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-06-09 12:10:13
(1 day ago)
[TueJun0914:10:07.6847132026][security2:error][pid986028:tid987881][client34.50.119.182:0]ModSecurit ...
show more
[TueJun0914:10:07.6847132026][security2:error][pid986028:tid987881][client34.50.119.182:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.smservizi.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aigCn71gTgJdlCoXgmQ7eQAAARU\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
piticu iuli
2026-06-09 10:15:29
(1 day ago)
(mod_security) mod_security triggered on hostname [redacted] 34.50.119.182 (ID/Indonesia/182.119.50. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.50.119.182 (ID/Indonesia/182.119.50.34.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-09 08:37:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:37:29.883263 2026] [security2:error] [pid 26196:tid 26196] [client 34.50.119.182:60552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.interoperabilitysolutions.motioncontrolpartners.com"] [uri "/.git/config"] [unique_id "aifQyYBkqRZlGIcl20JSkgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:06:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:06:31.181979 2026] [security2:error] [pid 23500:tid 23500] [client 34.50.119.182:47846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cozydesignae.com"] [uri "/.git/config"] [unique_id "aietZ7-kzQaFqP93S9EwYQAAADU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:08:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:08:13.970945 2026] [security2:error] [pid 9139:tid 9139] [client 34.50.119.182:55764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "integratic.com.co"] [uri "/.git/config"] [unique_id "aiefvTgS7Hq7CI3R0cpDOgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 03:58:34
(2 days ago)
34.50.119.182 - - [09/Jun/2026:05:58:26 +0200] "GET /.git/ HTTP/1.1" 403 445 "-" "Mozilla/5.0 (Windo ...
show more
34.50.119.182 - - [09/Jun/2026:05:58:26 +0200] "GET /.git/ HTTP/1.1" 403 445 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
34.50.119.182 - - [09/Jun/2026:05:58:27 +0200] "GET /.git/hooks/post-receive.sample HTTP/1.1" 404 442 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
34.50.119.182 - - [09/Jun/2026:05:58:27 +0200] "GET /.git/COMMIT_EDITMSG HTTP/1.1" 404 442 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
34.50.119.182 - - [09/Jun/2026:05:58:27 +0200] "GET /.git/hooks/post-commit.sample HTTP/1.1" 404 442 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
34.50.119.182 - - [09/Jun/2026:05:58:28 +0200] "GET /.git/objects/info/packs HTTP/1.1" 404 442 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0"
34.50.119.182 - - [09/Jun/2026:05:58:29 +0200] "GET /.git/logs/refs/heads/master HTTP/1.1" 404 442 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:55:07
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:54:59.048452 2026] [security2:error] [pid 6256:tid 6256] [client 34.50.119.182:59316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mediatvplus.com"] [uri "/.git/config"] [unique_id "aieOk_qndy0lKYXlPgq0_AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:09:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:09:36.277113 2026] [security2:error] [pid 26929:tid 26929] [client 34.50.119.182:57152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelcaico.com"] [uri "/.git/config"] [unique_id "aid14BV-A-2SxNhd-y7GdwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-09 01:52:14
(2 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.50.119.182 (ID/Indonesia/182.119 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.50.119.182 (ID/Indonesia/182.119.50.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 00:48:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.119.182 (182.119.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:48:28.904999 2026] [security2:error] [pid 25526:tid 25526] [client 34.50.119.182:38890] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.xmas.martinka.org"] [uri "/.git/config"] [unique_id "aidi3Hx8FBxyZtNUXPCwTQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack