Check an IP Address, Domain Name, Subnet, or ASN
192.109.200.249 has a threat confidence score of 73%. This IP address from Sweden (AS51396, Pfcloud UG (haftungsbeschrankt)) has been observed in 10 honeypot sessions and reported 4 times targeting HTTPS, HTTP protocols. First observed on February 15, 2026, most recently active March 23, 2026.
Identifies an HTTPS request targeting the .git/config file within a web-accessible repository directory. Access attempts to /.git/config indicate automated repository exposure scanning intended to retrieve remote origin URLs, repository structure, and potentially credential-bearing configuration data. This is a common reconnaissance technique used to identify misconfigured web servers exposing version control metadata.
| Reporter | Date | Category | Protocol | Comment |
|---|---|---|---|---|
| User | Mar 17, 2026, 20:30 | Brute Force | HTTP | SikkerGuard: 2 blocked packets |
| User | Mar 17, 2026, 20:20 | Brute Force | HTTP | SikkerGuard: 2 blocked packets |
| User | Mar 17, 2026, 08:48 | Brute Force | HTTP | SikkerGuard: 2 blocked packets |
| User | Mar 17, 2026, 08:43 | Brute Force | HTTP | SikkerGuard: 2 blocked packets |