๐ฎ๐ณ
evicky2002
2026-09-17 06:00:05
(3 days ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฉ๐ช
Michel Wijnberg
2026-09-16 23:45:09
(3 days ago)
23.236.51.119 - - [16/Sep/2026:23:45:08 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "-"
...
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-16 23:40:55
(3 days ago)
Try to access /.git/config
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-16 23:13:56
(3 days ago)
cloudlinux2 fail2ban: 2026-09-17 01:10:59,143 fail2ban.filter [1818]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-17 01:10:59,143 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 223.185.19.214 - 2026-09-17 01:10:59cloudlinux2 fail2ban: 2026-09-17 01:11:14,677 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 23.236.51.119 - 2026-09-17 01:11:14cloudlinux2 fail2ban: 2026-09-17 01:12:12,447 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 223.185.19.214 - 2026-09-17 01:12:12cloudlinux2 fail2ban: 2026-09-17 01:12:25,789 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 34.22.253.224 - 2026-09-17 01:12:25cloudlinux2 fail2ban: 2026-09-17 01:12:25,717 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 34.22.253.224 - 2026-09-17 01:12:25cloudlinux2 fail2ban: 2026-09-17 01:12:24,073 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 34.22.253.224 - 2026-09-17 01:12:24cloudlinux2 fail2ban: 2026-09-17 01:12:25,840 fail2ban.filter [1818]: INFO [plesk-modsecurity] Found 34.22.253.224 - 2026-09-17 0
show less
Brute-Force
๐ฌ๐ง
Aetherweb Ark
2026-09-16 23:04:13
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 23.236.51.119 (US/United States/119.51.236.23.b ...
show more
(mod_security) mod_security (id:949110) triggered by 23.236.51.119 (US/United States/119.51.236.23.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ฉ๐ช
s@ch@
2026-09-16 22:15:01
(3 days ago)
Jail: plesk-modsecurity | Web application attack (Plesk ModSecurity)
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-16 22:13:42
(3 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ซ๐ท
spot
2026-09-16 22:10:52
(3 days ago)
23.236.51.119 - - [16/Sep/2026:23:10:32 +0100] "GET /.git/config HTTP/1.1" 404 4663 "-" "-"
...
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-09-16 22:05:28
(3 days ago)
Abuse Detected (25)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 22:02:37
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 23.236.51.119 (119.51.236.23.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 23.236.51.119 (119.51.236.23.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 18:02:31.193335 2026] [security2:error] [pid 1380:tid 1380] [client 23.236.51.119:53536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.weroinc.com"] [uri "/.git/config"] [unique_id "aqsR95v9XEyyv7pQnP_QFAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:00:52
(3 days ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
Anonymous
2026-09-16 22:00:16
(3 days ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ง๐ช
voormedia
2026-09-16 21:59:57
(3 days ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 21:41:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 23.236.51.119 (119.51.236.23.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 23.236.51.119 (119.51.236.23.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 17:41:45.366707 2026] [security2:error] [pid 20790:tid 20790] [client 23.236.51.119:47204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wellness-mastery.com"] [uri "/.git/config"] [unique_id "aqsNGQM3HsPb_QDS6ZiirwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 21:21:57
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 23.236.51.119 (119.51.236.23.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 23.236.51.119 (119.51.236.23.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 17:21:53.874876 2026] [security2:error] [pid 14063:tid 14063] [client 23.236.51.119:46242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.weightlossover50.customdesignsbybjp.com"] [uri "/.git/config"] [unique_id "aqsIcS1hzaEvwjV5Iz9aEgAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack