๐ซ๐ท
masterguru
2026-07-27 15:40:06
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 12:06:05
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 08:05:58.565554 2026] [security2:error] [pid 3566618:tid 3566618] [client 3.25.233.139:48470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artattackgraphics.com"] [uri "/.git/config"] [unique_id "amdJph0xb6ixPAs1ElOWrwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 11:29:18
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 07:29:12.073258 2026] [security2:error] [pid 2250927:tid 2250927] [client 3.25.233.139:54638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blockadegc.com"] [uri "/.git/config"] [unique_id "amSeCGretIC5sBo0tm8e1wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 22:47:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 18:47:40.337729 2026] [security2:error] [pid 1354349:tid 1354349] [client 3.25.233.139:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.nyemdr.com"] [uri "/.git/config"] [unique_id "amPrjAZxjXTBpLnqt3i21gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-24 21:59:32
(2 days ago)
Auto-ban: >3000 req/min op 2026-07-24
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-24 15:07:29
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 11:07:23.172097 2026] [security2:error] [pid 2636738:tid 2636738] [client 3.25.233.139:53788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bins.mcbrearty.org"] [uri "/.git/config"] [unique_id "amN_q-fdeMXaBimGUm2a8wAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
macrob
2026-07-24 14:05:07
(3 days ago)
2026/07/24 14:05:05 [error] 991479#991479: *406911848 access forbidden by rule, client: 3.25.233.139 ...
show more
2026/07/24 14:05:05 [error] 991479#991479: *406911848 access forbidden by rule, client: 3.25.233.139, server: fn.binixo.es, request: "GET /.git/config HTTP/1.1", host: "binixo.bg"
2026/07/24 14:05:05 [error] 991479#991479: *406911848 access forbidden by rule, client: 3.25.233.139, server: fn.binixo.es, request: "GET /.env HTTP/1.1", host: "binixo.bg"
2026/07/24 14:05:05 [error] 991479#991479: *406911848 access forbidden by rule, client: 3.25.233.139, server: fn.binixo.es, request: "GET /.env.local HTTP/1.1", host: "binixo.bg"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 07:21:40
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.c ...
show more
(mod_security) mod_security (id:210492) triggered by 3.25.233.139 (ec2-3-25-233-139.ap-southeast-2.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 03:21:36.456355 2026] [security2:error] [pid 1051359:tid 1051359] [client 3.25.233.139:57124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.mosherpit.com"] [uri "/.git/config"] [unique_id "amMSgHExX4aHV_BRwS6pWgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-24 04:39:47
(3 days ago)
3.25.233.139 - - [24/Jul/2026:01:39:45 -0300] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 ( ...
show more
3.25.233.139 - - [24/Jul/2026:01:39:45 -0300] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐ซ๐ท
Octopuce
2026-07-24 03:49:47
(3 days ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack