๐จ๐ญ
backslash
2026-08-23 17:33:00
(12 hours ago)
block ruleset CC531825F9395F9A07FB06C1247C46770A2690F8
Bad Web Bot
๐ท๐ด
clauss
2026-08-22 06:28:28
(1 day ago)
34.57.68.211 - - [22/Aug/2026:09:28:27 +0300] "GET /.git/HEAD HTTP/2.0" 404 48 "-" "Mozilla/5.0 (Win ...
show more
34.57.68.211 - - [22/Aug/2026:09:28:27 +0300] "GET /.git/HEAD HTTP/2.0" 404 48 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
34.57.68.211 - - [22/Aug/2026:09:28:28 +0300] "GET /.git/HEAD HTTP/2.0" 404 48 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 06:24:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.57.68.211 (211.68.57.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.57.68.211 (211.68.57.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 02:24:48.793101 2026] [security2:error] [pid 28129:tid 28129] [client 34.57.68.211:51504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pozzolan.org"] [uri "/.git/HEAD"] [unique_id "aolAsEqZAM9vEGrnpkzkPwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-08-22 03:40:07
(2 days ago)
ipoac.nl:443 34.57.68.211 - - [22/Aug/2026:05:40:06 +0200] ipoac.nl "GET /.git/HEAD HTTP/2.0" 404 20 ...
show more
ipoac.nl:443 34.57.68.211 - - [22/Aug/2026:05:40:06 +0200] ipoac.nl "GET /.git/HEAD HTTP/2.0" 404 2021 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Bad Web Bot
๐ฟ๐ฆ
conure.sh
2026-08-22 02:47:13
(2 days ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
๐ฉ๐ช
MSC IT for Business GmbH
2026-08-22 02:45:09
(2 days ago)
GASTO/CrowdSec: gasto/modsec-critical triggered (via crowdsec-agent, categories 15,21)
Hacking
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 02:35:51
(2 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: admin.teddypot.cloud | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-16 23:02:34
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: api.teddypot.store | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-16 22:24:36
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
maxpower
2026-08-15 23:59:58
(1 week ago)
(PERMBLOCK) 34.57.68.211 (US/United States/211.68.57.34.bc.googleusercontent.com) has had more than ...
show more
(PERMBLOCK) 34.57.68.211 (US/United States/211.68.57.34.bc.googleusercontent.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ช๐ธ
pipeline.es
2026-08-15 22:49:16
(1 week ago)
Web scanning / probing for vulnerable paths | URL: /about | Evidence: aavv.com 34.57.68.211 - - [16/ ...
show more
Web scanning / probing for vulnerable paths | URL: /about | Evidence: aavv.com 34.57.68.211 - - [16/Aug/2026:00:48:42 +0200] \"GET /about HTTP/1.1\" 404 203 \"-\" \"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack
๐ซ๐ท
IRISIO
2026-08-14 08:11:31
(1 week ago)
scans/SQL injection/spam posts : 140 queries
Web App Attack
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-14 04:34:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.57.68.211 (211.68.57.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.57.68.211 (211.68.57.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 00:34:18.235044 2026] [security2:error] [pid 20095:tid 20095] [client 34.57.68.211:57064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "laecovillage.org"] [uri "/.git/HEAD"] [unique_id "an6ayvWsvci8IMV6Jflx3wAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
paissangroup
2026-08-13 23:26:56
(1 week ago)
Multiple WAF Violations
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-13 21:59:24
(1 week ago)
[14/Aug/2026:00:59:24 +0300] -- 34.57.68.211 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[14/Aug/2026:00:59:24 +0300] -- 34.57.68.211 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack