🇩🇪
ghostwarriors
2026-09-02 10:21:00
(5 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 00:40:03
(1 week ago)
suspicious request in access.log
Web App Attack
🇫🇷
spot
2026-08-28 00:20:09
(1 week ago)
200.162.155.21 - - [28/Aug/2026:01:20:05 +0100] "GET /.git/config HTTP/1.1" 404 4626 "http://forumga ...
show more
200.162.155.21 - - [28/Aug/2026:01:20:05 +0100] "GET /.git/config HTTP/1.1" 404 4626 "http://forumgarden.com/.git/config" "Go-http-client/1.1"
...
show less
Web App Attack
Hacking
🇩🇪
london2038.com
2026-08-27 09:39:02
(1 week ago)
Probing for exploits
200.162.155.21 - - [27/Aug/2026:11:38:59 +0200] "GET /.git/config HTTP/1.1" 422 ...
show more
Probing for exploits
200.162.155.21 - - [27/Aug/2026:11:38:59 +0200] "GET /.git/config HTTP/1.1" 422 0 "-" "Go-http-client/1.1"
200.162.155.21 - - [27/Aug/2026:11:38:59 +0200] "GET /.git/config HTTP/1.1" 422 0 "-" "Go-http-client/1.1"
show less
Hacking
Web App Attack
🇺🇸
interbiznw.com
2026-08-26 00:25:12
(1 week ago)
malicious-web-requests-vulnerability-scanning
Hacking
Brute-Force
Exploited Host
Web App Attack
🇳🇱
homeshowdomain.nl
2026-08-25 22:00:43
(1 week ago)
Auto-ban: >3000 req/min op 2026-08-25
Web App Attack
SSH
Hacking
🇺🇦
URAN Publishing Service
2026-08-25 17:07:26
(1 week ago)
[25/Aug/2026:20:07:26 +0300] -- 200.162.155.21 Ban reason: User-Agent Go-http-client
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-25 15:46:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 200.162.155.21 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 200.162.155.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:46:38.762610 2026] [security2:error] [pid 24285:tid 24285] [client 200.162.155.21:33409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "h-vpastoralcharge.org"] [uri "/.git/config"] [unique_id "ao243sxmNqQdn75i7AUWuwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-25 15:31:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 200.162.155.21 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 200.162.155.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:31:06.913727 2026] [security2:error] [pid 20720:tid 20720] [client 200.162.155.21:21899] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "livinghopehighschool.org"] [uri "/.git/config"] [unique_id "ao21OtxlGUdMHaMx4hh95AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ghostwarriors
2026-08-25 15:20:25
(1 week ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
🇳🇴
jad-abuse
2026-08-25 15:19:00
(1 week ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 5 hits.
show less
Web App Attack
🇳🇱
e.fierstra
2026-08-25 14:47:55
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇮🇹
Inartis
2026-08-25 13:33:30
(1 week ago)
200.162.155.21 - - [25/Aug/2026:15:33:26 +0200] "GET /.git/config HTTP/1.1" 302 457 "-" "Go-http-cli ...
show more
200.162.155.21 - - [25/Aug/2026:15:33:26 +0200] "GET /.git/config HTTP/1.1" 302 457 "-" "Go-http-client/1.1"
200.162.155.21 - - [25/Aug/2026:15:33:27 +0200] "GET /.git/config HTTP/1.1" 403 5480 "http://hotelfirenzeterme.it/.git/config" "Go-http-client/1.1"
200.162.155.21 - - [25/Aug/2026:15:33:29 +0200] "GET /.git/config HTTP/1.1" 403 5480 "-" "Go-http-client/1.1"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇭🇷
bubausluge
2026-08-25 13:14:55
(1 week ago)
Blocked by https://aegis.hr — WAF: ModSec rule match - (MITRE T1190), 1 attempts, Period: 2026-08-25 ...
show more
Blocked by https://aegis.hr — WAF: ModSec rule match - (MITRE T1190), 1 attempts, Period: 2026-08-25 12:50:30 to 2026-08-25 12:50:30
show less
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-08-25 13:03:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 200.162.155.21 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 200.162.155.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:03:51.970513 2026] [security2:error] [pid 12490:tid 12490] [client 200.162.155.21:41145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "livesteamtracks.info"] [uri "/.git/config"] [unique_id "ao2StzisXTiA5PeYGWMFiwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack