Anonymous
2026-07-28 04:31:46
(7 minutes ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-07-27 22:15:56
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 18:15:51.603344 2026] [security2:error] [pid 1696472:tid 1696472] [client 34.75.42.165:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vl.365soft.top"] [uri "/.git/config"] [unique_id "amfYl6Ai1vn0CQC62_jnjAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-27 22:08:44
(6 hours ago)
34.75.42.165 - - [28/Jul/2026:01:08:43 +0300] "GET /.git/config HTTP/1.1" 404 4680 "-" "-"
...
Web App Attack
๐ฌ๐ง
consul.to
2026-07-27 21:45:47
(6 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-07-27 21:30:02
(7 hours ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 21:03:14
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 17:03:07.551252 2026] [security2:error] [pid 1989382:tid 1989382] [client 34.75.42.165:53878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vitalitywebb.com.backstore.com"] [uri "/.git/config"] [unique_id "amfHi-nadgg6OwFckbx-1QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-07-27 20:38:18
(8 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 20:29:31
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 16:29:24.332075 2026] [security2:error] [pid 27067:tid 27067] [client 34.75.42.165:51136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "visitors.oxfordgliding.com"] [uri "/.git/config"] [unique_id "ame_pNFMvajmaGH4Gz30PwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-07-27 20:21:54
(8 hours ago)
Probing for .git:
34.75.42.165 - - [27/Jul/2026:22:21:52 +0200] "GET /.git/config HTTP/1.1" 403 146 ...
show more
Probing for .git:
34.75.42.165 - - [27/Jul/2026:22:21:52 +0200] "GET /.git/config HTTP/1.1" 403 146 "-" "-"
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-27 20:15:36
(8 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.75.42.165 (US/United States/165. ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.75.42.165 (US/United States/165.42.75.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 20:03:11
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 16:03:05.365116 2026] [security2:error] [pid 3967863:tid 3967863] [client 34.75.42.165:58076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "visco174.com"] [uri "/.git/config"] [unique_id "ame5eQiBhIcm0sHy8gnHdgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-27 20:02:39
(8 hours ago)
34.75.42.165 - - [27/Jul/2026:23:02:38 +0300] "GET /.git/config HTTP/1.1" 404 4693 "-" "-"
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:41:09
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:41:00.803196 2026] [security2:error] [pid 868704:tid 868704] [client 34.75.42.165:38852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virtualfresco.com"] [uri "/.git/config"] [unique_id "ame0TD1wTmynFNQRC_5nZQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:23:10
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.75.42.165 (165.42.75.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:23:04.558228 2026] [security2:error] [pid 3083:tid 3083] [client 34.75.42.165:46644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virginiajohnstone.com"] [uri "/.git/config"] [unique_id "amewGK6gVK84NB8iDX7q6AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ด
adalbertoreyes.org
2026-07-27 19:06:34
(9 hours ago)
CategoryPortScan
Port Scan