🇹🇷
oalver
2026-09-10 07:25:09
(12 hours ago)
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signa ...
show more
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: nginx_path_signature. Sources: nginx. Details: path_signature: request to /.git/config (HTTP 403). First seen: 2026-09-09. Risk score: 30/100.
show less
Web App Attack
🇲🇽
octageeks.com
2026-09-10 04:22:26
(15 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
🇫🇷
service Informatique
2026-09-10 04:00:37
(16 hours ago)
/.git
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 23:58:08
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com ...
show more
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 19:58:03.499943 2026] [security2:error] [pid 21157:tid 21157] [client 172.86.74.238:46018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.theprobabilityis.bahamascruisersguide.com"] [uri "/.git/config"] [unique_id "aqHyi7SG6f9inQ04XSQFYQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ghostwarriors
2026-09-09 23:50:05
(20 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 23:42:57
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com ...
show more
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 19:42:52.569451 2026] [security2:error] [pid 8738:tid 8738] [client 172.86.74.238:50356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mcbrude.com"] [uri "/.git/config"] [unique_id "aqHu_KP1Ric7iUEHu5SBDgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
yitzhaq
2026-09-09 23:31:44
(20 hours ago)
172.86.74.238 - - [10/Sep/2026:00:19:50 +0200] "GET /.git/config HTTP/1.1" 403 4551 "-" "Mozilla/5.0 ...
show more
172.86.74.238 - - [10/Sep/2026:00:19:50 +0200] "GET /.git/config HTTP/1.1" 403 4551 "-" "Mozilla/5.0 (X11; Linux x86_64)"
172.86.74.238 - - [10/Sep/2026:00:39:12 +0200] "GET /.git/config HTTP/1.1" 301 4539 "-" "Mozilla/5.0 (X11; Linux x86_64)"
172.86.74.238 - - [10/Sep/2026:01:31:40 +0200] "GET /.git/config HTTP/1.1" 403 4535 "-" "Mozilla/5.0 (X11; Linux x86_64)"
show less
Web App Attack
Hacking
🇮🇩
penjaga BRIN
2026-09-09 23:28:01
(20 hours ago)
Suspicious malicious activity
Hacking
🇫🇷
spot
2026-09-09 23:15:31
(20 hours ago)
172.86.74.238 - - [10/Sep/2026:00:15:31 +0100] "GET /.git/config HTTP/1.1" 404 4647 "-" "Mozilla/5.0 ...
show more
172.86.74.238 - - [10/Sep/2026:00:15:31 +0100] "GET /.git/config HTTP/1.1" 404 4647 "-" "Mozilla/5.0 (X11; Linux x86_64)"
...
show less
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-09 23:14:58
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com ...
show more
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 19:14:53.309699 2026] [security2:error] [pid 24071:tid 24071] [client 172.86.74.238:32770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "delicatessefoods.com"] [uri "/.git/config"] [unique_id "aqHobXPOliOv6w97UycOUAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 22:59:53
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com ...
show more
(mod_security) mod_security (id:210492) triggered by 172.86.74.238 (238.74.86.172.static.cloudzy.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 18:59:48.257960 2026] [security2:error] [pid 11131:tid 11131] [client 172.86.74.238:56130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.psa.michaelpmcgrath.com"] [uri "/.git/config"] [unique_id "aqHk5PZqIKgPzY02m0mYdwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
AvonleaConsulting
2026-09-09 22:59:01
(21 hours ago)
Attempts to probe web pages for vulnerable PHP or other applications
Web App Attack
Anonymous
2026-09-09 22:50:24
(21 hours ago)
Unauthorized access (443/tcp/https)
Port Scan
Web App Attack
🇬🇧
Smish
2026-09-09 22:45:20
(21 hours ago)
HONEYPOT HIT --> Fail2ban time=1788993918 log=2026-09-09T23:45:18+01:00 ip=172.86.74.238 host=as2106 ...
show more
HONEYPOT HIT --> Fail2ban time=1788993918 log=2026-09-09T23:45:18+01:00 ip=172.86.74.238 host=as210667.net method=GET uri="/.git/config" status=404 ua="Mozilla/5.0 (X11; Linux x86_64)" ref="-" rid=16b94f3c610474a8a213173d52de40cf
show less
Web App Attack
🇩🇪
mravb
2026-09-09 22:29:23
(21 hours ago)
172.86.74.238 - - [10/Sep/2026:01:29:22 +0300] "GET /.git/config HTTP/1.1" 404 150 "-" "Mozilla/5.0 ...
show more
172.86.74.238 - - [10/Sep/2026:01:29:22 +0300] "GET /.git/config HTTP/1.1" 404 150 "-" "Mozilla/5.0 (X11; Linux x86_64)"
...
show less
Web App Attack
Hacking