๐ณ๐ฑ
homeshowdomain.nl
2026-08-22 22:04:38
(6 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-21.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
interbiznw.com
2026-08-22 21:01:41
(6 days ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 20:06:40
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 16:06:35.116865 2026] [security2:error] [pid 4963:tid 4963] [client 157.245.251.125:57590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cityoffoley.gov"] [uri "/.git/config"] [unique_id "aooBS0iUjnq6wjvTqOWCowAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-22 19:35:53
(6 days ago)
Accessed trap at '/.git/config'
Web App Attack
Anonymous
2026-08-22 19:30:14
(6 days ago)
GET /.git/config HTTP/1.1
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 17:18:48
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 13:18:43.705543 2026] [security2:error] [pid 12890:tid 12890] [client 157.245.251.125:35328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "infodevman.net"] [uri "/.git/config"] [unique_id "aonZ8_2hqBI30PbPm_QOOAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 16:17:43
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 12:17:38.039928 2026] [security2:error] [pid 12158:tid 12168] [client 157.245.251.125:42452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lamcohomecare.com"] [uri "/.git/config"] [unique_id "aonLovyNKZoK4tsqnNimJQAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 15:46:26
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 11:46:19.985558 2026] [security2:error] [pid 13962:tid 13994] [client 157.245.251.125:51162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chanyin.org"] [uri "/.git/config"] [unique_id "aonES8oy1fzaHXGj1T3KHQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:13:45
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:13:41.261212 2026] [security2:error] [pid 8392:tid 8392] [client 157.245.251.125:33842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kahnengineering.com"] [uri "/.git/config"] [unique_id "aomulaMIMuLP8Fi2s5PMKQAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-22 12:05:12
(6 days ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 06:47:05
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 02:47:02.170718 2026] [security2:error] [pid 27272:tid 27272] [client 157.245.251.125:36908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plumpen.com"] [uri "/.git/config"] [unique_id "aolF5kDr-9tDr0m9kaLQwgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 05:29:34
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 157.245.251.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:29:28.211306 2026] [security2:error] [pid 14614:tid 14614] [client 157.245.251.125:49348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "multilize.com"] [uri "/.git/config"] [unique_id "aokzuNuQG3gvXaib6by2HwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
abivia
2026-08-22 04:53:50
(6 days ago)
Abivia WAF trigger: Rule scriptKiddies: Dot file access. uri: /.git/config
Hacking
๐ฉ๐ช
4server
2026-08-22 03:44:42
(6 days ago)
[SatAug2205:44:38.3960182026][security2:error][pid1952500:tid1952630][client157.245.251.125:0]ModSec ...
show more
[SatAug2205:44:38.3960182026][security2:error][pid1952500:tid1952630][client157.245.251.125:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"shaping.ch\"][uri\"/.git/config\"][unique_id\"aokbJoe6Ur-c7-FAM04J0AAAAUs\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 02:19:22
(6 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.ovh | URI: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack