🇦🇺
2000cn.com.au
2026-09-09 19:49:41
(5 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
IVski.com
2026-09-09 19:36:38
(18 minutes ago)
IVski WAF | Sensitive file probe - looking for exposed .git/config
Hacking
Brute-Force
Web App Attack
Anonymous
2026-09-09 19:29:52
(25 minutes ago)
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
🇵🇱
Budyn
2026-09-09 19:27:42
(27 minutes ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: docker.dont-eat-the-pudding.online | URI: /.git/config | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 19:26:02
(29 minutes ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
🇬🇷
ggb_st
2026-09-09 19:22:36
(32 minutes ago)
[2026-09-09 19:22:35] 34.73.184.0 triggered a honeypot. Requested on port 443. URI: /.git/config, UA ...
show more
[2026-09-09 19:22:35] 34.73.184.0 triggered a honeypot. Requested on port 443. URI: /.git/config, UA:
...
show less
Bad Web Bot
Brute-Force
Web App Attack
Hacking
SQL Injection
🇫🇷
pm33
2026-09-09 19:18:43
(36 minutes ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
Anonymous
2026-09-09 19:12:11
(42 minutes ago)
fail2ban jail apache-secrets-probe: 34.73.184.0 - - [09/Sep/2026:12:12:10 -0700] "GET /.git/config H ...
show more
fail2ban jail apache-secrets-probe: 34.73.184.0 - - [09/Sep/2026:12:12:10 -0700] "GET /.git/config HTTP/1.1" 403 4424 "-" "-"
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 18:34:56
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 14:34:49.816948 2026] [security2:error] [pid 12320:tid 12320] [client 34.73.184.0:33508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chipnado.fractalsky.com"] [uri "/.git/config"] [unique_id "aqGmyWbHr1UqI9q-gE0t4gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇳
Zhengka.net
2026-09-09 18:11:58
(1 hour ago)
zhengka.net security honeypot hit; jail=zhengka.net_honeypot; ip=34.73.184.0
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 18:09:28
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 14:09:23.027736 2026] [security2:error] [pid 11564:tid 11564] [client 34.73.184.0:43098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chelseafootballprogrammes.com"] [uri "/.git/config"] [unique_id "aqGg0wysw06ccuB1Hv747QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
mravb
2026-09-09 17:55:21
(1 hour ago)
34.73.184.0 - - [09/Sep/2026:20:55:20 +0300] "GET /.git/config HTTP/1.1" 404 1458 "-" "-"
...
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-09 17:39:36
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 13:39:29.510488 2026] [security2:error] [pid 7983:tid 7983] [client 34.73.184.0:41914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chaosstaffing.apfarrell.com"] [uri "/.git/config"] [unique_id "aqGZ0Xl7qvxbd3P3hXDPIgAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
ALPHANET
2026-09-09 17:30:42
(2 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 17:23:41
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.184.0 (0.184.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 13:23:34.224512 2026] [security2:error] [pid 18632:tid 18632] [client 34.73.184.0:38736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cg-assembly.cgautomatizacion.com"] [uri "/.git/config"] [unique_id "aqGWFphVxDBQzMFJWQDdEwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack