π³π±
homeshowdomain.nl
2026-04-21 22:02:17
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-04-20.
show less
Web App Attack
SSH
Hacking
π©πͺ
Vegascosmetics
2026-04-21 21:50:40
(4 months ago)
Kingcopy(AI-IDS): IP is wandering around the site and acting suspiciously.
Bad Web Bot
π¬π§
openstrike.co.uk
2026-04-21 05:13:52
(4 months ago)
4 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
π³π±
jjnxpct
2026-04-21 03:48:58
(4 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.git/config (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .git/ found within REQUEST_FILENAME: /.git/config]
show less
Web App Attack
Hacking
π³π±
homeshowdomain.nl
2026-04-20 22:01:06
(4 months ago)
Auto-ban: >3000 req/min op 2026-04-20
Web App Attack
SSH
Hacking
Anonymous
2026-04-20 20:15:02
(4 months ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
π«π·
masterguru
2026-04-20 19:56:36
(4 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-20 19:54:25
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 15:54:19.302952 2026] [security2:error] [pid 545855:tid 545855] [client 104.199.155.115:59944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "consolidatedoperationsgroup.com"] [uri "/.git/config"] [unique_id "aeaEax8OBx-UPKCl2WGm3gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-20 19:31:01
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 15:30:54.871125 2026] [security2:error] [pid 3113167:tid 3113167] [client 104.199.155.115:56592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "concreting.net"] [uri "/.git/config"] [unique_id "aeZ-7qgJvqGA7WBzOJIx2gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-04-20 19:18:51
(4 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-20 19:13:45
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 15:13:40.469170 2026] [security2:error] [pid 376756:tid 376756] [client 104.199.155.115:33484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "compliancedepts.com"] [uri "/.git/config"] [unique_id "aeZ65BH4JJBpuMCUtDwnkAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-20 18:50:16
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 14:50:09.954031 2026] [security2:error] [pid 3361441:tid 3361441] [client 104.199.155.115:33234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "comicpreservation.com"] [uri "/.git/config"] [unique_id "aeZ1YZq9GQWdhebRdvw_rwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
TheCoon
2026-04-20 18:45:01
(4 months ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-04-20 18:01:16
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 104.199.155.115 (115.155.199.104.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 14:01:12.372745 2026] [security2:error] [pid 950693:tid 950693] [client 104.199.155.115:38310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cointraptions.com"] [uri "/.git/config"] [unique_id "aeZp6ENBIq86Qdmd421CRwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-04-20 17:32:45
(4 months ago)
2.335 requests with url.path */.git/config
Brute-Force
Bad Web Bot