๐ณ๐ฑ
Alt255
2026-10-02 15:09:04
(6 hours ago)
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 2402:1f00:8000:800::3b2f - - [02/Oct/2026:17:08:59 +0200] "GET /.git/config HTTP/2.0" 404 1920 "-" "Python/3.12 aiohttp/3.14.3"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-10-02 13:14:23
(8 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ท๐ด
clauss
2026-10-02 12:39:06
(9 hours ago)
2402:1f00:8000:800::3b2f - - [02/Oct/2026:15:39:05 +0300] "GET /.git/config HTTP/2.0" 404 18504 "-" ...
show more
2402:1f00:8000:800::3b2f - - [02/Oct/2026:15:39:05 +0300] "GET /.git/config HTTP/2.0" 404 18504 "-" "Python/3.12 aiohttp/3.14.3"
2402:1f00:8000:800::3b2f - - [02/Oct/2026:15:39:05 +0300] "GET /.git/config HTTP/2.0" 404 18504 "-" "Python/3.12 aiohttp/3.14.3"
...
show less
Web App Attack
Anonymous
2026-10-02 04:47:13
(17 hours ago)
Web probing (1 hits in 24h) on charlesquaedvlieg.nl: sensitive-path scans and/or 404 bursts. Reporte ...
show more
Web probing (1 hits in 24h) on charlesquaedvlieg.nl: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐ง๐ท
radardatelecom
2026-10-01 22:26:03
(23 hours ago)
Blocked by Radar da Telecom firewall โ abuseipdb
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-01 21:59:42
(23 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-30.
show less
Web App Attack
SSH
Hacking
๐ธ๐ฌ
securejdprop
2026-10-01 19:55:19
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐จ๐ฆ
Anytech
2026-10-01 16:51:26
(1 day ago)
Blocked by ConnMonitor
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 14:19:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh. ...
show more
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh.ca): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 10:19:24.641304 2026] [security2:error] [pid 12381:tid 12381] [client 2402:1f00:8000:800::3b2f:46678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cacs.me"] [uri "/.git/config"] [unique_id "ar5r7DKUs9nfbw9qf8GUtgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 13:06:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh. ...
show more
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh.ca): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 09:06:16.529849 2026] [security2:error] [pid 15193:tid 15193] [client 2402:1f00:8000:800::3b2f:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "byloveshand.com"] [uri "/.git/config"] [unique_id "ar5ayDd_c9_y52OO_lAR1AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-10-01 09:28:36
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: budyn.ovh | URI: /.git/config | UA: Python/3.12 aiohttp/3.14.3 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 07:58:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh. ...
show more
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh.ca): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 03:58:28.068895 2026] [security2:error] [pid 11018:tid 11018] [client 2402:1f00:8000:800::3b2f:36978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brupharm.eu"] [uri "/.git/config"] [unique_id "ar4SpOt_EkOuMTBubt4IQAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 05:25:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh. ...
show more
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh.ca): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:25:36.615956 2026] [security2:error] [pid 25953:tid 25953] [client 2402:1f00:8000:800::3b2f:40714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brentsagnotti.com"] [uri "/.git/config"] [unique_id "ar3u0G6QaY9xdPJf3NIe4AAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 04:52:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh. ...
show more
(mod_security) mod_security (id:210492) triggered by 2402:1f00:8000:800::3b2f (vps-b6052a5a.vps.ovh.ca): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 00:52:23.439965 2026] [security2:error] [pid 29959:tid 29959] [client 2402:1f00:8000:800::3b2f:47202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brazilianbikinis.com"] [uri "/.git/config"] [unique_id "ar3nB3QMSG_4H84_3EWJrwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-01 04:27:57
(1 day ago)
2402:1f00:8000:800::3b2f - - [01/Oct/2026:12:27:57 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "P ...
show more
2402:1f00:8000:800::3b2f - - [01/Oct/2026:12:27:57 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "Python/3.12 aiohttp/3.14.3"
...
show less
Bad Web Bot
Web App Attack