πΊπΈ
NXTwoThou
2026-05-27 06:02:04
(1 week ago)
/.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-27 05:55:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 01:55:02.682024 2026] [security2:error] [pid 23221:tid 23221] [client 34.166.85.51:48882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.coastalpirates.com"] [uri "/.git/config"] [unique_id "ahaHNoQXW-9qcQbvn9wGVAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-27 05:19:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 01:19:14.707747 2026] [security2:error] [pid 31211:tid 31211] [client 34.166.85.51:50826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.reallifelearninghub.com"] [uri "/.git/config"] [unique_id "ahZ-0mWmCsxGHXtio1e8wQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-27 04:04:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 27 00:04:24.062489 2026] [security2:error] [pid 15908:tid 15908] [client 34.166.85.51:42136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eandgenergy.com"] [uri "/.git/config"] [unique_id "ahZtSBKGMDZIZi3C1MD_rgAAAGc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Bedios GmbH
2026-05-27 03:27:19
(1 week ago)
Login credentials theft attempt
Hacking
πΊπΈ
TPI-Abuse
2026-05-27 02:43:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:43:30.889508 2026] [security2:error] [pid 23010:tid 23010] [client 34.166.85.51:52712] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nessmonsters.com"] [uri "/.git/config"] [unique_id "ahZaUky9tRuLTZBHDBP1jQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-27 02:24:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 22:24:45.821121 2026] [security2:error] [pid 629:tid 629] [client 34.166.85.51:52258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hendersonhomes.com"] [uri "/.git/config"] [unique_id "ahZV7dvsrq0l4sfk4y6yiQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-27 02:05:55
(1 week ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-27 00:57:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 20:57:05.579115 2026] [security2:error] [pid 20349:tid 20349] [client 34.166.85.51:36942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.thepercussionworks.com"] [uri "/.git/config"] [unique_id "ahZBYU1u4CECTcxxwe3QrQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π±π»
garmtech.com
2026-05-26 23:41:34
(1 week ago)
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probi ...
show more
Attempted access to sensitive endpoint (/.git/config) detected. Automated scan or unauthorized probing.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-26 23:20:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 19:20:29.639283 2026] [security2:error] [pid 9842:tid 9842] [client 34.166.85.51:44842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.oiseauxsisters.com"] [uri "/.git/config"] [unique_id "ahYqvaIm2iF4LKTwt0MvGAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
ParaBug
2026-05-26 23:16:09
(1 week ago)
34.166.85.51 - - [27/May/2026:01:16:09 +0200] "GET /.git/config HTTP/1.1" 301 3111 "-" "Opera/7.51 ( ...
show more
34.166.85.51 - - [27/May/2026:01:16:09 +0200] "GET /.git/config HTTP/1.1" 301 3111 "-" "Opera/7.51 (Windows NT 5.1; U) [en]"
...
show less
Phishing
Brute-Force
Web App Attack
πΊπΈ
technojoe99
2026-05-26 22:58:05
(1 week ago)
Exploit scan from 34.166.85.51. GET /.git/config HTTP/1.1.
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-26 22:26:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.166.85.51 (51.85.166.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 18:26:27.912653 2026] [security2:error] [pid 5036:tid 5036] [client 34.166.85.51:58068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.whiteblackbird.com"] [uri "/.git/config"] [unique_id "ahYeE4T2ywWmujf8DdEIQQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack