๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 21:59:27
(4 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-26.
show less
Web App Attack
SSH
Hacking
๐ซ๐ท
tecnicorioja
2026-08-26 22:02:19
(5 days ago)
(Mod_security)
Web App Attack
Brute-Force
Bad Web Bot
๐ซ๐ท
arsonist
2026-08-26 10:36:32
(5 days ago)
This IP accessed the path /.git/config, which is banned. Powered by ListenCaddy
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2026-08-26 06:37:59
(5 days ago)
URL scan
Brute-Force
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-08-26 05:16:21
(5 days ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ฆ๐บ
paulshipley.com.au
2026-08-26 04:56:41
(5 days ago)
[Wed Aug 26 14:56:40.448097 2026] [security2:error] [pid 311579] [client 147.182.216.142:38136] [cli ...
show more
[Wed Aug 26 14:56:40.448097 2026] [security2:error] [pid 311579] [client 147.182.216.142:38136] [client 147.182.216.142] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "furst.com.au"] [uri "/.git/config"] [unique_id "ao5yCPoLQ8qdv5k3md4K5wAAAAc"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 02:58:40
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 22:58:32.362742 2026] [security2:error] [pid 512:tid 512] [client 147.182.216.142:43384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "book-arts-press.com"] [uri "/.git/config"] [unique_id "ao5WWFNHbq0pIhoiTC4x1AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
whatda
2026-08-26 01:20:32
(6 days ago)
HTTP tarpit triggered at /.git/config. Scanner trapped for ~30s. UA: Mozilla/5.0 (X11; Linux x86_64) ...
show more
HTTP tarpit triggered at /.git/config. Scanner trapped for ~30s. UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/5
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-26 00:05:06
(6 days ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-25 23:33:56
(6 days ago)
cloudlinux2 fail2ban: 2026-08-26 01:29:31,427 fail2ban.filter [1464]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-26 01:29:31,427 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 147.182.216.142 - 2026-08-26 01:29:31cloudlinux2 fail2ban: 2026-08-26 01:30:22,287 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 104.197.49.166 - 2026-08-26 01:30:22cloudlinux2 fail2ban: 2026-08-26 01:30:25,248 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 51.39.226.2 - 2026-08-26 01:30:25cloudlinux2 fail2ban: 2026-08-26 01:30:25,024 fail2ban.filter [1464]: INFO [recidive] Found 104.197.49.166 - 2026-08-26 01:30:24cloudlinux2 fail2ban: 2026-08-26 01:30:24,833 fail2ban.actions [1464]: NOTICE [plesk-modsecurity] Ban 104.197.49.166cloudlinux2 fail2ban: 2026-08-26 01:30:22,700 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 104.197.49.166 - 2026-08-26 01:30:22cloudlinux2 fail2ban: 2026-08-26 01:30:24,313 fail2ban.filter [1464]: INFO [plesk-modsecurity] Found 104.197.49.166 - 2026-08-26 01:30:23cloudlinux2 fail2ban: 2
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-25 23:16:03
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 19:15:59.199377 2026] [security2:error] [pid 14617:tid 14617] [client 147.182.216.142:45172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "idahostem.org"] [uri "/.git/config"] [unique_id "ao4iL4KSJozjj9B5RNyoIAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:56:30
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:56:25.475345 2026] [security2:error] [pid 21394:tid 21394] [client 147.182.216.142:57644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jamroomrecording.com"] [uri "/.git/config"] [unique_id "ao4dmT35n8nHxe_eAeZiSgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:31:49
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 147.182.216.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:31:44.054391 2026] [security2:error] [pid 12283:tid 12283] [client 147.182.216.142:37852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "directoryofbikes.com"] [uri "/.git/config"] [unique_id "ao4X0AET-b372llkm8r0gwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-25 21:59:32
(6 days ago)
Auto-ban: >3000 req/min op 2026-08-25
Web App Attack
SSH
Hacking
๐บ๐ธ
craudiovizai
2026-08-25 18:30:44
(6 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot