๐บ๐ธ
infra-monitor
2026-08-24 16:00:04
(4 days ago)
Automated ban via infra-monitor: suspicious-probe
Port Scan
๐ซ๐ท
ELYAZ
2026-08-24 15:41:33
(4 days ago)
(y3) Failed access -byebye- from 34.80.16.42 (TW/Taiwan/42.16.80.34.bc.googleusercontent.com): (CF_ ...
show more
(y3) Failed access -byebye- from 34.80.16.42 (TW/Taiwan/42.16.80.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐บ๐ธ
CBJ
2026-08-24 15:34:44
(4 days ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
RamSet
2026-08-24 15:33:15
(4 days ago)
[swy] HTTP-Probe on port 443 (via domain). 1 distinct paths probed in 3min. Sustained 1 req/min. Pat ...
show more
[swy] HTTP-Probe on port 443 (via domain). 1 distinct paths probed in 3min. Sustained 1 req/min. Paths: /.git/config
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-08-24 15:28:31
(4 days ago)
34.80.16.42 - - [24/Aug/2026:17:28:31 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (W ...
show more
34.80.16.42 - - [24/Aug/2026:17:28:31 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
0tsystems
2026-08-24 15:27:05
(4 days ago)
Automated scan detected on 0t.systems: /.git
Web App Attack
๐ฉ๐ช
HERA - Operations
2026-08-24 15:24:37
(4 days ago)
herrmann - searching for vulnerable scripts: config 2026/08/24 17:24:37
Web App Attack
๐ต๐ฑ
Budyn
2026-08-24 15:24:34
(4 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.ovh | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐ฌ๐ง
consul.to
2026-08-24 15:24:09
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:21:36
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.16.42 (42.16.80.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.16.42 (42.16.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:21:33.201388 2026] [security2:error] [pid 31282:tid 31282] [client 34.80.16.42:48592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grampys.toys"] [uri "/.git/config"] [unique_id "aoxhfbPviaxxjX1R4DhtfQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
enpepet
2026-08-24 15:21:14
(4 days ago)
GENERAL: parametres: [url:git=] UA:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 URL: ...
show more
GENERAL: parametres: [url:git=] UA:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 URL:/.git/config
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-24 14:05:19
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 34.80.16.42 (42.16.80.34.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 34.80.16.42 (42.16.80.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 10:05:13.761519 2026] [security2:error] [pid 3992925:tid 3993006] [client 34.80.16.42:8130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "promoralchoice.org"] [uri "/.git/config"] [unique_id "aoxPmbfu65n9V2KSf23FNwAAAtE"]
show less
Brute-Force
Bad Web Bot
Web App Attack