🇫🇷
EDSL
2026-09-11 04:33:44
(16 minutes ago)
[gps.edsl.fr] Blocked by SysWarden Firewall (Web Attack Port 443)
Web App Attack
Hacking
Port Scan
🇺🇸
TPI-Abuse
2026-09-11 04:24:39
(25 minutes ago)
(mod_security) mod_security (id:210492) triggered by 172.86.81.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.86.81.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 00:24:31.808310 2026] [security2:error] [pid 9619:tid 9619] [client 172.86.81.51:41472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gictd.com"] [uri "/.git/config"] [unique_id "aqOCfxHq_k5YVNq67sd73QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Grossmann-Gruppe
2026-09-11 04:21:57
(28 minutes ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
Anonymous
2026-09-11 04:17:45
(32 minutes ago)
172.86.81.51 - - [11/Sep/2026:04:17:45 +0000] "GET /.git/config HTTP/1.1" 404 7512 "-" "Mozilla/5.0 ...
show more
172.86.81.51 - - [11/Sep/2026:04:17:45 +0000] "GET /.git/config HTTP/1.1" 404 7512 "-" "Mozilla/5.0 (X11; Linux x86_64)"
...
show less
Bad Web Bot
Web App Attack
🇲🇽
octageeks.com
2026-09-11 04:16:24
(33 minutes ago)
Wordpress malicious attack:[octablocked]
Web App Attack
🇫🇷
Sklurk
2026-09-11 04:15:58
(34 minutes ago)
Web App Attack
Web App Attack
🇮🇹
Progetto1
2026-09-11 04:10:03
(40 minutes ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-09-11 04:09:33
(40 minutes ago)
(caddyscan) Scanner path probe from 172.86.81.51 (SG/Singapore/-): 5 in the last 3600 secs; Ports: * ...
show more
(caddyscan) Scanner path probe from 172.86.81.51 (SG/Singapore/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 172.86.81.51 - - [11/Sep/2026:04:08:07 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.86.81.51 - - [11/Sep/2026:04:08:38 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.86.81.51 - - [11/Sep/2026:04:09:18 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.86.81.51 - - [11/Sep/2026:04:09:27 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.86.81.51 - - [11/Sep/2026:04:09:29 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
🇨🇦
arsonist
2026-09-11 04:02:52
(47 minutes ago)
This IP accessed the path /.git/config, which is banned. Powered by ListenCaddy
Bad Web Bot
Web App Attack
🇳🇱
svr
2026-09-11 04:00:41
(49 minutes ago)
Abusive Automated Web Scanner
Web App Attack
🇺🇸
Charlesiv
2026-09-11 04:00:40
(49 minutes ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
ASN: 14956 (RouterHosting LLC ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
ASN: 14956 (RouterHosting LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-09-11T00:27:25Z
Ray ID: a3928beed989fdc5
UA: Mozilla/5.0 (X11; Linux x86_64)
show less
Bad Web Bot
🇳🇱
MyGlobalFlowers
2026-09-11 03:58:42
(51 minutes ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-11 03:58:13
(51 minutes ago)
172.86.81.51 - - [11/Sep/2026:05:58:13 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ( ...
show more
172.86.81.51 - - [11/Sep/2026:05:58:13 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (X11; Linux x86_64)"
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 03:57:00
(53 minutes ago)
(mod_security) mod_security (id:210492) triggered by 172.86.81.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.86.81.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 23:56:52.702247 2026] [security2:error] [pid 11629:tid 11629] [client 172.86.81.51:37236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fivecentmiracle.com"] [uri "/.git/config"] [unique_id "aqN8BJjG9mlTSiR4RvZzuAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
macrob
2026-09-11 03:54:49
(55 minutes ago)
2026/09/11 03:54:47 [error] 100827#100827: *1139748 access forbidden by rule, client: 172.86.81.51, ...
show more
2026/09/11 03:54:47 [error] 100827#100827: *1139748 access forbidden by rule, client: 172.86.81.51, server: finami.ph, request: "GET /.git/config HTTP/2.0", host: "finami.ph"
2026/09/11 03:54:47 [error] 100827#100827: *1139751 access forbidden by rule, client: 172.86.81.51, server: finami.es, request: "GET /.git/config HTTP/2.0", host: "finami.es"
2026/09/11 03:54:47 [error] 100824#100824: *1137257 access forbidden by rule, client: 172.86.81.51, server: finami.mx, request: "GET /.git/config HTTP/2.0", host: "finami.mx"
...
show less
Web App Attack