๐บ๐ธ
้ฌผๅฝฑ233
2026-10-11 07:46:20
(53 minutes ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/144.0.0.0 Safari/537.36 Edg/144.0.0.0
show less
Bad Web Bot
๐ณ๐ฑ
Alt255
2026-09-14 10:37:42
(3 weeks ago)
[ti-12al] Web exploit scanning: 2 suspicious requests detected by fail2ban jail <name>. Example: 212 ...
show more
[ti-12al] Web exploit scanning: 2 suspicious requests detected by fail2ban jail <name>. Example: 212.195.255.15 - - \[11/Sep/2026:18:25:17 +0200\] "GET /.git/HEAD HTTP/1.1" 301 6299 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/128.0.0.0 Safari/537.36"
212.195.255.15 - - \[11/Sep/2026:18:25:17 +0200\] "GET /.git/config HTTP/1.1" 301 561 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/128.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
้ฌผๅฝฑ233
2026-09-14 09:54:02
(3 weeks ago)
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Sa ...
show more
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
show less
Bad Web Bot
๐ฎ๐ณ
evicky2002
2026-09-13 06:00:01
(4 weeks ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐จ๐ฟ
sweet_acid
2026-09-13 00:52:50
(4 weeks ago)
Local web evidence: family=path_probe; path=/.git/config; enforce_count=10; active_ban_hits=0
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-12 22:00:18
(4 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-11.
show less
Web App Attack
SSH
Hacking
Anonymous
2026-09-12 13:45:07
(4 weeks ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ฟ๐ฆ
conure.sh
2026-09-12 13:17:28
(4 weeks ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐ซ๐ท
masterguru
2026-09-12 11:30:51
(4 weeks ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 11:05:08
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft ...
show more
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft.lns.abo.bbox.fr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 07:05:00.083502 2026] [security2:error] [pid 21269:tid 21269] [client 212.195.255.15:8042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yacht-register-holland.com"] [uri "/.git/HEAD"] [unique_id "aqUx3FnpWqvWz_5quL4BEAAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 10:46:46
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft ...
show more
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft.lns.abo.bbox.fr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 06:46:41.833852 2026] [security2:error] [pid 27291:tid 27291] [client 212.195.255.15:8033] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "idahostem.org"] [uri "/.git/HEAD"] [unique_id "aqUtkWgTGVMwehQJWCg8zQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 10:28:53
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft ...
show more
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft.lns.abo.bbox.fr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 06:28:48.287963 2026] [security2:error] [pid 18777:tid 18800] [client 212.195.255.15:8055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafm.us"] [uri "/.git/HEAD"] [unique_id "aqUpYFKjZtog0oHu6w2X4QAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dom4k
2026-09-12 10:09:28
(4 weeks ago)
212.195.255.15 - - [12/Sep/2026:10:09:27 +0000] "GET /.git/HEAD HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Wi ...
show more
212.195.255.15 - - [12/Sep/2026:10:09:27 +0000] "GET /.git/HEAD HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
...
show less
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 10:07:28
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft ...
show more
(mod_security) mod_security (id:210492) triggered by 212.195.255.15 (i16-lef01-ix2-212-195-255-15.ft.lns.abo.bbox.fr): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 06:07:23.696516 2026] [security2:error] [pid 30587:tid 30616] [client 212.195.255.15:8093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coherencerx.com"] [uri "/.git/HEAD"] [unique_id "aqUkWyUgZI5erEJRfJP4vgAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
GoodOldTOS
2026-09-12 04:12:38
(4 weeks ago)
Bad keywords detected in request: /.git
Web App Attack