๐ซ๐ท
IRISIO
2026-08-24 07:11:31
(1 day ago)
scans/SQL injection/spam posts : 54 queries
Web App Attack
SQL Injection
Anonymous
2026-08-22 19:02:12
(3 days ago)
"GET /.git/HEAD HTTP/1.1"
Hacking
Web App Attack
๐ง๐ช
cmbplf
2026-08-22 10:37:43
(3 days ago)
152 requests with url.path *.hg/*
152 requests with url.path *.svn/*
Brute-Force
Bad Web Bot
๐ฌ๐ง
myintarweb
2026-08-22 09:38:33
(3 days ago)
136.64.238.16 - - [22/Aug/2026:10:38:32 +0100] 443 "GET /.git/HEAD HTTP/2.0" 404 1147 "-" "Mozilla/5 ...
show more
136.64.238.16 - - [22/Aug/2026:10:38:32 +0100] 443 "GET /.git/HEAD HTTP/2.0" 404 1147 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-22 09:28:56
(3 days ago)
cloudlinux2 fail2ban: 2026-08-22 11:24:10,597 fail2ban.filter [1480]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-22 11:24:10,597 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 2.29.6.9 - 2026-08-22 11:24:10cloudlinux2 fail2ban: 2026-08-22 11:24:23,006 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 202.65.225.156 - 2026-08-22 11:24:22cloudlinux2 fail2ban: 2026-08-22 11:25:24,120 fail2ban.actions [1480]: NOTICE [plesk-modsecurity] Ban 136.64.238.16cloudlinux2 fail2ban: 2026-08-22 11:25:23,398 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 136.64.238.16 - 2026-08-22 11:25:23cloudlinux2 fail2ban: 2026-08-22 11:25:24,122 fail2ban.filter [1480]: INFO [recidive] Found 136.64.238.16 - 2026-08-22 11:25:24cloudlinux2 fail2ban: 2026-08-22 11:25:23,388 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 136.64.238.16 - 2026-08-22 11:25:22cloudlinux2 fail2ban: 2026-08-22 11:25:24,110 fail2ban.filter [1480]: INFO [plesk-modsecurity] Found 136.64.238.16 - 2026-08-22 11:25:24cloudlinux2 fail2ban: 2026-08-22
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-22 08:40:11
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 04:40:03.622351 2026] [security2:error] [pid 21811:tid 21811] [client 136.64.238.16:38604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jerryfeil.com"] [uri "/.git/HEAD"] [unique_id "aolgY5BOLj0mLfd_vzl0JwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 08:29:28
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.astropot.store | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-22 08:21:30
(3 days ago)
[22/Aug/2026:11:21:30 +0300] -- 136.64.238.16 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[22/Aug/2026:11:21:30 +0300] -- 136.64.238.16 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-22 08:08:57
(3 days ago)
Accessed trap at '/.git/HEAD'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 06:56:10
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 02:56:07.130009 2026] [security2:error] [pid 12650:tid 12650] [client 136.64.238.16:40770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.misomayo.com"] [uri "/.git/HEAD"] [unique_id "aolIBzpQSsyMOTmSgyBAqwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-22 06:36:27
(3 days ago)
Web application attack detected.
Web App Attack
๐ฌ๐ง
Artelis
2026-08-22 06:32:58
(3 days ago)
136.64.238.16 - - [22/Aug/2026:06:32:53 +0000] "GET /.git/HEAD HTTP/2.0" 404 167 "-" "Mozilla/5.0 (W ...
show more
136.64.238.16 - - [22/Aug/2026:06:32:53 +0000] "GET /.git/HEAD HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
136.64.238.16 - - [22/Aug/2026:06:32:54 +0000] "GET /.git/HEAD HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
136.64.238.16 - - [22/Aug/2026:06:32:54 +0000] "GET /.svn/wc.db HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
136.64.238.16 - - [22/Aug/2026:06:32:54 +0000] "GET /.svn/wc.db HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
136.64.238.16 - - [22/Aug/2026:06:32:55 +0000] "GET /CVS/Entries HTTP/2.0" 404 167 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
1
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 06:23:29
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 02:23:22.989987 2026] [security2:error] [pid 9306:tid 9306] [client 136.64.238.16:37170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.deindo.com"] [uri "/.git/HEAD"] [unique_id "aolAWrMYfqKjDRT921MqBAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-08-22 06:18:10
(3 days ago)
136.64.238.16 - - [22/Aug/2026:08:18:10 +0200] "GET /.git/HEAD HTTP/2.0" 403 72 "-" "Mozilla/5.0 (Wi ...
show more
136.64.238.16 - - [22/Aug/2026:08:18:10 +0200] "GET /.git/HEAD HTTP/2.0" 403 72 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 05:53:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.238.16 (16.238.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:53:52.309501 2026] [security2:error] [pid 19851:tid 19851] [client 136.64.238.16:48402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.app.fourminutedecision.com"] [uri "/.git/HEAD"] [unique_id "aok5cF7Iwo-68KHbuIHE9wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack