๐บ๐ธ
TPI-Abuse
2026-07-28 18:53:08
(5 hours ago)
(mod_security) mod_security (id:949110) triggered by 34.50.176.166 (166.176.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 34.50.176.166 (166.176.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 14:53:04.559676 2026] [security2:error] [pid 2271799:tid 2271799] [client 34.50.176.166:42544] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "theshitmyaisays.com"] [uri "/.git/config"] [unique_id "amj6kNx8sCUbyKtrgJTKgAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 18:35:51
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.176.166 (166.176.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.176.166 (166.176.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 14:35:44.235129 2026] [security2:error] [pid 3081973:tid 3081973] [client 34.50.176.166:60408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greencornokies.org"] [uri "/.git/config"] [unique_id "amj2gAA9amhiTufXg8n-xgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
FreeMyIP
2026-07-28 17:01:49
(7 hours ago)
Automated fail2ban report: web application attack / scanning for exploitable paths.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 16:44:55
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.176.166 (166.176.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.176.166 (166.176.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 12:44:47.982149 2026] [security2:error] [pid 2059723:tid 2059723] [client 34.50.176.166:52634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zheudi.com.greighhouse.com"] [uri "/.git/config"] [unique_id "amjcf_8caoX5klE9Zcd70gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-07-28 16:05:27
(8 hours ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-07-28 15:54:23
(8 hours ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 34.50.176.166 - - [28/Jul/2026:18:54:22 +0300] "G ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 34.50.176.166 - - [28/Jul/2026:18:54:22 +0300] "GET /.git/config HTTP/1.1" 403 6284 "-" "-"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 15:47:54
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.50.176.166 (166.176.50.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.176.166 (166.176.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 11:47:49.192340 2026] [security2:error] [pid 2589:tid 2589] [client 34.50.176.166:59726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accommodation-perthairport.com"] [uri "/.git/config"] [unique_id "amjPJVSAM9FzWqaGi1maxAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-07-28 15:45:04
(8 hours ago)
34.50.176.166 - - [28/Jul/2026:17:45:03 +0200] "GET /.git/config HTTP/1.1" 403 5202 "-" "-"
...
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
securejdprop
2026-07-28 15:40:16
(9 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐บ๐ธ
MPL
2026-07-28 15:39:17
(9 hours ago)
tcp/443 (4 or more attempts)
Port Scan
๐ฉ๐ช
Viveronese
2026-07-28 15:25:53
(9 hours ago)
HTTP vulnerability scanning
Web App Attack
๐จ๐ญ
Cybercat
2026-07-28 15:13:44
(9 hours ago)
CrowdSec detection: phnag/http-empty-ua
Hacking
๐ณ๐ฑ
myip.foo
2026-07-28 15:10:33
(9 hours ago)
[myip.foo] 34.50.176.166 - - [28/Jul/2026:15:10:32 +0000] "GET /.git/config HTTP/1.1" 404 150 "-" "- ...
show more
[myip.foo] 34.50.176.166 - - [28/Jul/2026:15:10:32 +0000] "GET /.git/config HTTP/1.1" 404 150 "-" "-"
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-07-28 15:07:41
(9 hours ago)
34.50.176.166 - - [28/Jul/2026:17:07:37 +0200] "GET /.git/config HTTP/1.1" 403 5176 "-" "-"
...
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-28 14:45:01
(9 hours ago)
suspicious request in access.log
Web App Attack