π³π±
Alt255
2026-10-02 16:22:52
(14 minutes ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34. ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 34.75.2.108 - - \[02/Oct/2026:18:22:46 +0200\] "GET /.git/config HTTP/1.1" 404 5823 "-" "-"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 16:22:34
(14 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 12:22:27.611918 2026] [security2:error] [pid 892:tid 892] [client 34.75.2.108:57574] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mhservice.mayan.abecasis.com"] [uri "/.git/config"] [unique_id "ar_aQyUL5HgiK9qaoBVTqgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 16:02:24
(34 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 12:02:17.011208 2026] [security2:error] [pid 18528:tid 18528] [client 34.75.2.108:51684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mewebdesign.buffaloweddingdeejay.com"] [uri "/.git/config"] [unique_id "ar_ViccJNoEwrLRtzS_WNQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-10-02 16:01:45
(35 minutes ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 15:50:05
(47 minutes ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
π©πͺ
LRob
2026-10-02 15:45:27
(51 minutes ago)
Secret file probe | method: GET | path: /.git/config | ua: -
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 15:39:57
(57 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 11:39:50.783036 2026] [security2:error] [pid 11141:tid 11141] [client 34.75.2.108:46292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.metaluz.com.sv.mpservice.com.sv"] [uri "/.git/config"] [unique_id "ar_QRosWximk475WfYaKcwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-10-02 15:39:46
(57 minutes ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
πΊπΈ
Major Hostility
2026-10-02 15:36:19
(1 hour ago)
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET ...
show more
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
"GET /.git/config HTTP/1.1" 404
show less
Web App Attack
π©πͺ
rh24
2026-10-02 15:32:42
(1 hour ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.75.2.108 (US/United States/108.2.75.34 ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 34.75.2.108 (US/United States/108.2.75.34.bc.googleusercontent.com)
show less
Hacking
π«π·
dynamix
2026-10-02 15:31:50
(1 hour ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-10-02 15:26:02
(1 hour ago)
Web probing (2 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (2 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
πΊπΈ
mnsf
2026-10-02 15:05:21
(1 hour ago)
Abuse Detected (21)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 14:57:39
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.2.108 (108.2.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 10:57:34.563308 2026] [security2:error] [pid 25392:tid 25392] [client 34.75.2.108:38264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.members.oxfordgliding.com"] [uri "/.git/config"] [unique_id "ar_GXhtUxN-Dljk59bhhRwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π΄
jad-abuse
2026-10-02 14:53:17
(1 hour ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 3 hits.
show less
Web App Attack