๐ณ๐ฑ
homeshowdomain.nl
2026-03-15 22:59:18
(2 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-03-14.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
octageeks.com
2026-03-15 04:06:20
(2 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-03-14 22:59:42
(2 months ago)
Auto-ban: >3000 req/min op 2026-03-14
Web App Attack
SSH
Hacking
Anonymous
2026-03-14 12:19:33
(2 months ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-03-14 08:05:14
(2 months ago)
2.039 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
Mundo Bueno
2026-03-14 08:01:32
(2 months ago)
[ISILIA Protection v2.1] Tentative d'accรจs: /.git/config | Pays: US | UA: Mozilla/5.0 (X11; Ubuntu; ...
show more
[ISILIA Protection v2.1] Tentative d'accรจs: /.git/config | Pays: US | UA: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:117.0) Gecko/20100101 Firefox/117.0
show less
Hacking
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-03-14 07:56:37
(2 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ซ๐ฎ
as211431.net
2026-03-14 07:53:32
(2 months ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method) ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/2 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/122.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-03-14 07:53:17
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 136.109.26.233 (233.26.109.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.26.233 (233.26.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 03:53:12.434024 2026] [security2:error] [pid 17614:tid 17642] [client 136.109.26.233:38710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smarterproductions.com"] [uri "/.git/config"] [unique_id "abUT6AkZDdRcoZ3QTX5yawAAAVg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
TechnoSolutions CL
2026-03-14 07:50:59
(2 months ago)
136.109.26.233 - - [14/Mar/2026:07:50:53 +0000] "GET /.git/config HTTP/2.0" 200 1211 "-" "Mozilla/5. ...
show more
136.109.26.233 - - [14/Mar/2026:07:50:53 +0000] "GET /.git/config HTTP/2.0" 200 1211 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/122.0.0.0 Safari/537.36"
136.109.26.233 - - [14/Mar/2026:07:50:58 +0000] "GET /.git/config HTTP/2.0" 200 1210 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:117.0) Gecko/20100101 Firefox/117.0"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-03-14 07:50:14
(2 months ago)
[redacted] 136.109.26.233 - - [14/Mar/2026:08:08:14 +0100] "GET /.git/config HTTP/1.1" 302 5287 0/44 ...
show more
[redacted] 136.109.26.233 - - [14/Mar/2026:08:08:14 +0100] "GET /.git/config HTTP/1.1" 302 5287 0/44584 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/122.0.0.0 Safari/537.36" [redacted] 136.109.26.233 - - [14/Mar/2026:08:50:07 +0100] "GET /.git/config HTTP/1.1" 302 5267 0/54674 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:118.0) Gecko/20100101 Firefox/118.0"
show less
Bad Web Bot
Web App Attack
Anonymous
2026-03-14 07:45:04
(2 months ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1, GET /.git/config HTTP/2.0
Hacking
Web App Attack
๐บ๐ธ
OceanTreasure
2026-03-14 07:45:04
(2 months ago)
tcp/443; Git configuration exposure attempt: "GET /.git/config" @ 2026-03-14T07:40:26Z [proxy]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 07:37:03
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 136.109.26.233 (233.26.109.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.26.233 (233.26.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 03:36:57.035018 2026] [security2:error] [pid 24594:tid 24594] [client 136.109.26.233:57826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robotrodeo.net"] [uri "/.git/config"] [unique_id "abUQGaZFbwu8qGIjt-5PhwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ambor
2026-03-14 07:35:26
(2 months ago)
Attack type: wordpress_attack_attempt | Target: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win ...
show more
Attack type: wordpress_attack_attempt | Target: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:118.0 | Country: US
show less
Web App Attack
Brute-Force