๐ซ๐ท
mail.avx.gr
2026-07-23 11:29:20
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 144.172.104.62 - - [20/Jul/2026:15:38:50 +0300] " ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 144.172.104.62 - - [20/Jul/2026:15:38:50 +0300] "GET /.git/config HTTP/1.1" 403 6273 "-" "Mozilla/5.0 (X11; Linux x86_64)"
show less
Web App Attack
๐จ๐ญ
filou812
2026-07-22 02:53:00
(2 days ago)
url tried is "/.git/config"
Web App Attack
๐ฌ๐ง
WebNiraj
2026-07-22 00:30:36
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 144.172.104.62 (US/United States/62.104.172.144 ...
show more
(mod_security) mod_security (id:949110) triggered by 144.172.104.62 (US/United States/62.104.172.144.static.cloudzy.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-22 00:10:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 144.172.104.62 (62.104.172.144.static.cloudzy.c ...
show more
(mod_security) mod_security (id:210492) triggered by 144.172.104.62 (62.104.172.144.static.cloudzy.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 20:10:22.256472 2026] [security2:error] [pid 65504:tid 65504] [client 144.172.104.62:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mail-pmg.com"] [uri "/.git/config"] [unique_id "amAKboouVEA57ZVztk-X6gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-21 23:58:42
(3 days ago)
(caddyscan) Scanner path probe from 144.172.104.62 (US/United States/62.104.172.144.static.cloudzy.c ...
show more
(caddyscan) Scanner path probe from 144.172.104.62 (US/United States/62.104.172.144.static.cloudzy.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:23:31:29 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:23:49:52 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:23:52:18 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:23:54:53 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:23:58:38 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐ฟ๐ฆ
conure
2026-07-21 22:40:01
(3 days ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
MPL
2026-07-21 22:36:58
(3 days ago)
tcp/443 (3 or more attempts)
Port Scan
๐ฎ๐น
[email protected]
2026-07-21 22:31:40
(3 days ago)
144.172.104.62 - - [21/Jul/2026:22:02:12 +0200] "GET /.git/config HTTP/1.1" 404 6485 "-" "Mozilla/5. ...
show more
144.172.104.62 - - [21/Jul/2026:22:02:12 +0200] "GET /.git/config HTTP/1.1" 404 6485 "-" "Mozilla/5.0 (X11; Linux x86_64)"
show less
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-07-21 21:59:42
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-20.
show less
Web App Attack
SSH
Hacking
๐ต๐ฑ
srebrakowski.com
2026-07-21 21:57:51
(3 days ago)
crowdsec/waf-detected-exploits
Brute-Force
Anonymous
2026-07-21 21:52:06
(3 days ago)
Reported from Nginx log analysis 16. Log: 144.172.104.62 - - [21/Jul/2026:xx:xx:xx 0200] "GET /.git ...
show more
Reported from Nginx log analysis 16. Log: 144.172.104.62 - - [21/Jul/2026:xx:xx:xx 0200] "GET /.git/config HTTP/1.1" xxx xxx "-" "Mozilla/5.0 (X11; Linux x86_64)" "-" "US United States Las Vegas" "AS14956" "RouterHosting LLC"
show less
Port Scan
Brute-Force
SSH
๐บ๐ธ
jfz-abuse
2026-07-21 21:48:18
(3 days ago)
fail2ban: apache-filepath-recon
...
Web App Attack
Anonymous
2026-07-21 21:44:57
(3 days ago)
(caddyscan) Scanner path probe from 144.172.104.62 (US/United States/62.104.172.144.static.cloudzy.c ...
show more
(caddyscan) Scanner path probe from 144.172.104.62 (US/United States/62.104.172.144.static.cloudzy.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:21:37:33 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:21:38:40 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:21:44:29 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:21:44:34 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 144.172.104.62 - - [21/Jul/2026:21:44:52 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐บ๐ธ
jakob
2026-07-21 21:24:31
(3 days ago)
modsecurity Alert: Restricted File Access Attempt
Hacking
๐ฒ๐พ
Rizzy
2026-07-21 21:19:40
(3 days ago)
Multiple WAF Violations
Brute-Force
Web App Attack