๐ฌ๐ง
AvonleaConsulting
2026-10-06 22:58:09
(1 day ago)
Attempts to probe web pages for vulnerable PHP or other applications
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 20:21:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 16:21:51.903752 2026] [security2:error] [pid 23970:tid 23970] [client 34.73.22.186:40838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bewdleypizza.com"] [uri "/.git/config"] [unique_id "asVYXwiQWTYi9d1ShoMvMAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-10-06 20:11:27
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: beta.astropot.online | URI: /.git/config | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 19:57:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 15:56:57.842737 2026] [security2:error] [pid 13876:tid 13876] [client 34.73.22.186:59810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bencramer.org"] [uri "/.git/config"] [unique_id "asVSiXZxyhGN5yclCRuDugAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-10-06 19:56:42
(1 day ago)
(web_sensitive_file) srv104 Sensitive file probe (.env/.git/backup) 34.73.22.186 (US/United States/1 ...
show more
(web_sensitive_file) srv104 Sensitive file probe (.env/.git/backup) 34.73.22.186 (US/United States/186.22.73.34.bc.googleusercontent.com): 2 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-10-06 19:45:25
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 19:16:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 15:16:42.972940 2026] [security2:error] [pid 19551:tid 19551] [client 34.73.22.186:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barryherbach.com"] [uri "/.git/config"] [unique_id "asVJGgX8IRFdYWukcRAEygAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2026-10-06 19:12:26
(1 day ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
Anonymous
2026-10-06 19:09:37
(1 day ago)
[ssd5.kdns.gr] httpd-config-scan: sites=www.bamhairsalon.gr; logs=/var/log/httpd/domains/bamhairsalo ...
show more
[ssd5.kdns.gr] httpd-config-scan: sites=www.bamhairsalon.gr; logs=/var/log/httpd/domains/bamhairsalon.gr.log; samples=/.git/config
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 18:52:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 14:52:02.019515 2026] [security2:error] [pid 7501:tid 7501] [client 34.73.22.186:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backend.grainavi.com"] [uri "/.git/config"] [unique_id "asVDUmbMPREcF4Fq0FLQSgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-10-06 18:30:01
(1 day ago)
Automated security scanning detected: Git Repository Config Exposure. Systematic reconnaissance usin ...
show more
Automated security scanning detected: Git Repository Config Exposure. Systematic reconnaissance using automated tools.
show less
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-10-06 18:08:01
(1 day ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2026-10-06 18:03:48
(1 day ago)
URL scan
Brute-Force
Web App Attack
๐ฉ๐ช
bescared
2026-10-06 18:03:45
(1 day ago)
F2B - Malicious activity detected. URL Probing. -151302cd-
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 17:40:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.73.22.186 (186.22.73.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 13:40:50.522862 2026] [security2:error] [pid 16231:tid 16253] [client 34.73.22.186:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uoexpanse.com"] [uri "/.git/config"] [unique_id "asUyog1xNhiBmCmDGLG70wAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack