๐ฉ๐ช
PhishDestroy
2026-06-26 15:08:00
(2 months ago)
Automated scanning of phishdestroy.io for sensitive files (.env, config, credentials). Blocked by Cl ...
show more
Automated scanning of phishdestroy.io for sensitive files (.env, config, credentials). Blocked by Cloudflare WAF rule a85b24fd4b2b4574b9ac23a37dbd7d01. 1 blocked requests. Paths: /.git/config. UA: Mozilla/5.0 (Kubuntu; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537
show less
Web App Attack
Anonymous
2026-06-24 09:30:38
(2 months ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-06-24 01:43:29
(2 months ago)
(mod_security) mod_security (id:949110) triggered by 3.139.75.58 (US/United States/ec2-3-139-75-58.u ...
show more
(mod_security) mod_security (id:949110) triggered by 3.139.75.58 (US/United States/ec2-3-139-75-58.us-east-2.compute.amazonaws.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 01:17:50
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 21:17:46.105067 2026] [security2:error] [pid 28909:tid 28909] [client 3.139.75.58:38666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sanjuangrange.org"] [uri "/.git/config"] [unique_id "ajswOogNgfxsbtvXOP38XQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 01:00:11
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 21:00:03.512690 2026] [security2:error] [pid 17827:tid 17827] [client 3.139.75.58:59438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okwellbeing.com"] [uri "/.git/config"] [unique_id "ajssEykVA9zUDcKPiEUchAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 00:25:48
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 20:25:41.474289 2026] [security2:error] [pid 20460:tid 20468] [client 3.139.75.58:58216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hawk-av.com"] [uri "/.git/config"] [unique_id "ajskBfsb3kwmrYD8QNftGAAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-24 00:09:53
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 20:09:48.831882 2026] [security2:error] [pid 14876:tid 14876] [client 3.139.75.58:41040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "edscontracting.com"] [uri "/.git/config"] [unique_id "ajsgTKBYpOsyNGyu-sb3NgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
SilverZippo
2026-06-23 23:49:06
(2 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 23:39:50
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 19:39:42.027242 2026] [security2:error] [pid 13408:tid 13421] [client 3.139.75.58:36280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ardentsi.com"] [uri "/.git/config"] [unique_id "ajsZPrFTd2RqPagI4txpqwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-23 23:22:07
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 19:22:00.940825 2026] [security2:error] [pid 18557:tid 18557] [client 3.139.75.58:38020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "listings.cruisingforsex.com"] [uri "/.git/config"] [unique_id "ajsVGKjmtDBZg6c98ohmkQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-23 23:13:43
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ง๐ช
voormedia
2026-06-23 20:33:45
(2 months ago)
Accessed trap at '/.git/config'
Web App Attack
๐ง๐ช
cmbplf
2026-06-23 20:27:15
(2 months ago)
406 requests with url.path */.git/config
406 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐ฆ๐บ
2000cn.com.au
2026-06-23 19:42:20
(2 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-23 19:29:36
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute. ...
show more
(mod_security) mod_security (id:210492) triggered by 3.139.75.58 (ec2-3-139-75-58.us-east-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 23 15:29:29.954792 2026] [security2:error] [pid 15215:tid 15215] [client 3.139.75.58:47802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aandsmetal.com"] [uri "/.git/config"] [unique_id "ajremdZY87ASKVATjKpgewAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack