๐ฎ๐ณ
evicky2002
2026-07-28 06:00:00
(21 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ซ๐ท
masterguru
2026-07-27 10:47:43
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
Anonymous
2026-07-27 09:28:44
(1 day ago)
(PERMBLOCK) 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com) has had mo ...
show more
(PERMBLOCK) 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ฎ๐น
clamehost.it
2026-07-27 08:32:54
(1 day ago)
Automatic report - Brute Force attack using this IP address
Brute-Force
Anonymous
2026-07-27 07:55:06
(1 day ago)
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.a ...
show more
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:07:55:01 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:07:55:01 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:07:55:01 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:07:55:01 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:07:55:01 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
๐ณ๐ฑ
ConsulHosting
2026-07-27 07:13:09
(1 day ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-07-27 06:41:48
(1 day ago)
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.a ...
show more
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:06:41:43 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:06:41:43 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:06:41:43 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:06:41:44 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:06:41:44 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
Anonymous
2026-07-27 06:10:02
(1 day ago)
| Suspicious URL access.
Web App Attack
Hacking
SQL Injection
๐ฉ๐ช
R.G.
2026-07-27 05:39:40
(1 day ago)
(ScanningForFiles) Scanning for files triggerd 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central- ...
show more
(ScanningForFiles) Scanning for files triggerd 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 10 in the last 900 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
2026-07-27 05:18:02
(1 day ago)
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.a ...
show more
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:05:18:00 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:05:18:00 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:05:18:00 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:05:18:00 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:05:18:00 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
๐ณ๐ฑ
Mangelot Hosting
2026-07-27 04:38:31
(1 day ago)
(modsecurity) srv104 ModSecurity 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amaz ...
show more
(modsecurity) srv104 ModSecurity 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
2026-07-27 04:10:06
(1 day ago)
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.a ...
show more
(caddyscan) Scanner path probe from 3.78.220.232 (DE/Germany/ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:04:10:02 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:04:10:02 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:04:10:02 +0000] "GET /.env.local HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:04:10:02 +0000] "GET /.env.production HTTP/1.1"
[REDACTED] 200 2627 3.78.220.232 - - [27/Jul/2026:04:10:03 +0000] "GET /.env.staging HTTP/1.1"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-26 09:31:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 3.78.220.232 (ec2-3-78-220-232.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.78.220.232 (ec2-3-78-220-232.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 05:31:32.647848 2026] [security2:error] [pid 2277126:tid 2277126] [client 3.78.220.232:59258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "giganticmediallc.com"] [uri "/.git/config"] [unique_id "amXT9GXeB4BzH1Os3Q3F6AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
gigatech
2026-07-26 09:10:03
(2 days ago)
Webserver Probing
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-07-26 06:27:40
(2 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack