🇩🇪
ghostwarriors
2026-09-02 18:21:17
(3 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
Ivo Vynckier
2026-09-01 13:50:00
(4 days ago)
172.202.105.238 - - [01/Sep/2026:01:50:24 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5. ...
show more
172.202.105.238 - - [01/Sep/2026:01:50:24 +0200] "GET /.git/config HTTP/1.1" 403 177 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Web App Attack
🇺🇸
EvilTurkey
2026-09-01 12:50:26
(4 days ago)
Web app attack against financial institution website.
Web App Attack
Hacking
Anonymous
2026-09-01 09:15:44
(5 days ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-01 00:02:09
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 20:02:06.403671 2026] [security2:error] [pid 21279:tid 21279] [client 172.202.105.238:56528] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tracytappan.net"] [uri "/.git/config"] [unique_id "apYV_jz41h7FGPPIxu5PFQAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
rdpguard.com
2026-09-01 00:01:25
(5 days ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
Anonymous
2026-08-31 23:46:31
(5 days ago)
[01/Sep/2026:02:46:29 +0300] 178821998983.337276 172.202.105.238 37988 148.251.76.218 80
[01/Sep/202 ...
show more
[01/Sep/2026:02:46:29 +0300] 178821998983.337276 172.202.105.238 37988 148.251.76.218 80
[01/Sep/2026:02:46:31 +0300] 178821999170.234955 172.202.105.238 41228 148.251.76.218 443
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 23:43:21
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 19:43:15.785541 2026] [security2:error] [pid 896:tid 896] [client 172.202.105.238:33288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vexxarr.com"] [uri "/.git/config"] [unique_id "apYRkze9H_ZxvkGqxHOEKgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 23:28:18
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 19:28:11.762347 2026] [security2:error] [pid 25838:tid 25852] [client 172.202.105.238:48844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "econpage.com"] [uri "/.git/config"] [unique_id "apYOCziAK0m6ICQJU9OmxQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
Inartis
2026-08-31 23:27:19
(5 days ago)
172.202.105.238 - - [01/Sep/2026:01:27:18 +0200] "GET /.git/config HTTP/1.1" 302 515 "-" "Mozilla/5. ...
show more
172.202.105.238 - - [01/Sep/2026:01:27:18 +0200] "GET /.git/config HTTP/1.1" 302 515 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 23:04:42
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.202.105.238 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 19:04:38.444643 2026] [security2:error] [pid 3321:tid 3321] [client 172.202.105.238:44348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davidocchino.com"] [uri "/.git/config"] [unique_id "apYIhlDeHQx8aELlKxXQZAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
DrLex0
2026-08-31 22:57:53
(5 days ago)
Poking for git configs
172.202.105.238 80 - [31/Aug/2026:22:57:50 +0000] "GET /.git/config HTTP/1.1 ...
show more
Poking for git configs
172.202.105.238 80 - [31/Aug/2026:22:57:50 +0000] "GET /.git/config HTTP/1.1" 404 2439 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
172.202.105.238 443 - [31/Aug/2026:22:57:53 +0000] "GET /.git/config HTTP/1.1" 404 7527 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ghostwarriors
2026-08-31 22:50:10
(5 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Lino Project
2026-08-31 22:43:33
(5 days ago)
172.202.105.238 - - [01/Sep/2026:00:43:29 +0200] "GET /.git/config HTTP/1.1" 302 455 "-" "Mozilla/5. ...
show more
172.202.105.238 - - [01/Sep/2026:00:43:29 +0200] "GET /.git/config HTTP/1.1" 302 455 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 22:30:36
(5 days ago)
Web Server Exposed Git Repository Information Disclosure.
Hacking