๐บ๐ธ
TPI-Abuse
2025-03-10 11:11:11
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 152.42.191.35 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 152.42.191.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 10 07:11:05.080262 2025] [security2:error] [pid 16359:tid 16359] [client 152.42.191.35:60906] [client 152.42.191.35] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.manaplas.com"] [uri "/.git/HEAD"] [unique_id "Z87IyUvSvcWcabeZumCnHwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
niceshops.com
2025-03-10 00:35:47
(1 year ago)
Web Attack (09/Mar/2025:17:37:48.472", "frontend": "frontend_disco", "backend": "frontend_disco", "b ...
show more
Web Attack (09/Mar/2025:17:37:48.472", "frontend": "frontend_disco", "backend": "frontend_disco", "backend_server": "<NOSRV>", "time_request": 0, "time_wait": -1, "time_connect": -1, "time_response": -1, "time_active": 0, "status": 301, "bytes_read": 138, "termination_state": "LR--", "actconn": 103, "feconn": 102, "beconn": 0, "srv_conn": 0, "retries": 0, "srv_queue": 0, "backend_queue": 0, "capture_request": "{|||||||||||||||||||||||}", "capture_response GET /.git/HEAD)
show less
Web App Attack
๐ช๐ธ
el-brujo
2025-03-09 05:17:11
(1 year ago)
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: nextcloud.elhacker.net userAgent: Moz ...
show more
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: nextcloud.elhacker.net userAgent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-03-09T05:17:11Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ฉ๐ช
niceshops.com
2025-03-08 23:36:40
(1 year ago)
Web Attack (08/Mar/2025:21:18:38.412", "frontend": "frontend_disco", "backend": "frontend_disco", "b ...
show more
Web Attack (08/Mar/2025:21:18:38.412", "frontend": "frontend_disco", "backend": "frontend_disco", "backend_server": "<NOSRV>", "time_request": 0, "time_wait": -1, "time_connect": -1, "time_response": -1, "time_active": 0, "status": 301, "bytes_read": 135, "termination_state": "LR--", "actconn": 90, "feconn": 89, "beconn": 0, "srv_conn": 0, "retries": 0, "srv_queue": 0, "backend_queue": 0, "capture_request": "{|||||||||||||||||||||||}", "capture_response GET /.git/HEAD)
show less
Web App Attack
๐ง๐ช
voormedia
2025-03-08 23:00:27
(1 year ago)
Accessed trap at '/.git/HEAD'
Web App Attack
๐ช๐ธ
el-brujo
2025-03-08 19:44:23
(1 year ago)
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: warzone.elhacker.net userAgent: Mozil ...
show more
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: warzone.elhacker.net userAgent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-03-08T19:44:23Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2025-03-08 08:38:26
(1 year ago)
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: elhacker.net userAgent: Mozilla/5.0 ( ...
show more
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: elhacker.net userAgent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-03-08T08:38:26Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2025-03-08 07:59:03
(1 year ago)
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: ns2.elhacker.net userAgent: Mozilla/5 ...
show more
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: ns2.elhacker.net userAgent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-03-08T07:59:03Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
snappic
2025-03-07 18:19:57
(1 year ago)
Malicious URI path & DigitalOcean User Agent Spoofing [GET /.git/HEAD] [Mozilla/5.0 (X11; Ubuntu; Li ...
show more
Malicious URI path & DigitalOcean User Agent Spoofing [GET /.git/HEAD] [Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0]
show less
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2025-03-05 23:01:31
(1 year ago)
Cloudflare WAF: Request Path: /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Ho ...
show more
Cloudflare WAF: Request Path: /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: parrot.elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:75.0) Gecko/20100101 Firefox/75.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: POST Timestamp: 2025-03-05T23:01:31Z ruleId: db1f213645904ab9b16b227b4a6a7b3a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐ธ
el-brujo
2025-03-05 23:01:10
(1 year ago)
06/Mar/2025:00:01:10.614705 +0100Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
06/Mar/2025:00:01:10.614705 +0100Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 152.42.191.35] ModSecurity: Warning. Matched phrase "/.env" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.env found within REQUEST_FILENAME: /.env.local"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "parrot.elhacker.net"] [uri "/.env.local"] [unique_id "Z8jXtnDR_qHpWuY2LXIy_wACQys"]
...
show less
Hacking
Web App Attack
๐ช๐ธ
el-brujo
2025-03-01 23:05:36
(1 year ago)
Cloudflare WAF: Request Path: /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Ho ...
show more
Cloudflare WAF: Request Path: /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php Request Query: Host: parrot.elhacker.net userAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:75.0) Gecko/20100101 Firefox/75.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: POST Timestamp: 2025-03-01T23:05:36Z ruleId: db1f213645904ab9b16b227b4a6a7b3a. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack
๐ช๐จ
icp77
2025-02-28 14:56:00
(1 year ago)
Abuse DDoS
DDoS Attack
FTP Brute-Force
Port Scan
Hacking
SQL Injection
Brute-Force
Exploited Host
Web App Attack
SSH
Anonymous
2025-02-28 00:46:17
(1 year ago)
wordpress-trap
Web App Attack
๐ช๐ธ
el-brujo
2025-02-27 10:50:25
(1 year ago)
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: nextcloud.elhacker.net userAgent: Moz ...
show more
Cloudflare WAF: Request Path: /.git/HEAD Request Query: Host: nextcloud.elhacker.net userAgent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:88.0) Gecko/20100101 Firefox/88.0 Action: block Source: firewallManaged ASN Description: DIGITALOCEAN-ASN Country: SG Method: GET Timestamp: 2025-02-27T10:50:25Z ruleId: 23548ee2b36547a1be09bb2c0550c529. Report generated by Cloudflare-WAF-to-AbuseIPDB (https://github.com/MHG-LAB/Cloudflare-WAF-to-AbuseIPDB).
show less
Hacking
SQL Injection
Web App Attack