๐ซ๐ท
masterguru
2026-07-24 13:23:01
(3 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 13:09:46
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 09:09:40.506674 2026] [security2:error] [pid 2440695:tid 2440695] [client 18.192.114.112:48340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "varnadorefamily.com"] [uri "/.git/config"] [unique_id "amNkFKZWY7yoBbaO6C2N3gAAAD4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-24 13:05:33
(4 hours ago)
Blocked: Reason='Vulnerability probing โ PHP scan detected (40/60 min)'; Requests=40
Port Scan
๐ฉ๐ช
DocNetzwerk
2026-07-24 10:17:53
(6 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 18.192.114.112 (DE/Germany/ec2-18-192-1 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 18.192.114.112 (DE/Germany/ec2-18-192-114-112.eu-central-1.compute.amazonaws.com)
show less
SQL Injection
Anonymous
2026-07-24 09:00:14
(8 hours ago)
Bot / scanning and/or hacking attempts: GET /.env2 HTTP/1.1, GET /svelte/.env HTTP/1.1, GET /src/.en ...
show more
Bot / scanning and/or hacking attempts: GET /.env2 HTTP/1.1, GET /svelte/.env HTTP/1.1, GET /src/.env HTTP/1.1, GET /.env.live HTTP/1.1, GET /express/.env HTTP/1.1, GET /gitlab/.env HTTP/1.1, GET /.env.preprod HTTP/1.1, GET /dev/phpinfo.php HTTP/1.1, GET /production/.env HTTP/1.1, GET /backend/.env HTTP/1.1, GET /en/.env HTTP/1.1, GET /admin/.env HTTP/1.1
show less
Hacking
Web App Attack
๐ณ๐ฑ
Savvii
2026-07-24 08:40:04
(8 hours ago)
20 attempts against mh-misbehave-ban on pf221105
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 08:22:30
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 04:22:21.955838 2026] [security2:error] [pid 3808229:tid 3808299] [client 18.192.114.112:45394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vancekelly.com"] [uri "/.git/config"] [unique_id "amMgve4j2LiI724vDKAODwAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 07:09:10
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 03:09:03.683515 2026] [security2:error] [pid 250699:tid 250699] [client 18.192.114.112:44798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valueproducersalliance.org"] [uri "/.git/config"] [unique_id "amMPj3Cdrw5AXbe3pj23aAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 06:25:42
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:25:33.740217 2026] [security2:error] [pid 3491640:tid 3491640] [client 18.192.114.112:39672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valueandmeaning.com"] [uri "/.git/config"] [unique_id "amMFXeNeKyP2oswlZSzmjgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure
2026-07-24 06:01:58
(11 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
Anonymous
2026-07-24 05:18:10
(11 hours ago)
Multiple web server 400 error codes from same source ip
Web App Attack
๐จ๐ฆ
Dunham Support
2026-07-24 04:51:30
(12 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 18.192.114.112 (DE/Germany/ec2-18-192-1 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 18.192.114.112 (DE/Germany/ec2-18-192-114-112.eu-central-1.compute.amazonaws.com)
show less
SQL Injection
๐ฉ๐ช
paissangroup
2026-07-24 04:45:24
(12 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 04:31:31
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1 ...
show more
(mod_security) mod_security (id:210492) triggered by 18.192.114.112 (ec2-18-192-114-112.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 00:31:27.529193 2026] [security2:error] [pid 1062253:tid 1062253] [client 18.192.114.112:54460] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valkyriepanthers.com"] [uri "/.git/config"] [unique_id "amLqnwXPWQp2_dujgm9Z7QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack