๐ณ๐ฑ
homeshowdomain.nl
2026-05-05 22:00:00
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-04.
show less
Web App Attack
SSH
Hacking
๐ฎ๐ณ
evicky2002
2026-05-05 06:00:00
(4 months ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
openstrike.co.uk
2026-05-05 05:13:23
(4 months ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐บ๐ธ
octageeks.com
2026-05-05 04:06:55
(4 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐ฉ๐ช
bescared
2026-05-04 23:17:29
(4 months ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ท
pocketpark
2026-05-04 22:59:01
(4 months ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpo ...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /.git/config | UA: Empty string โข Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-05-04 22:58:24
(4 months ago)
Web App Attack
๐น๐ผ
tye
2026-05-04 22:50:08
(4 months ago)
Wazuh Alert Evidence: [Tue May 05 06:50:05.842376 2026] [security2:error] [pid 3107780] [client 34.1 ...
show more
Wazuh Alert Evidence: [Tue May 05 06:50:05.842376 2026] [security2:error] [pid 3107780] [client 34.145.203.216:56282] [client 34.145.203.216] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/apache2/owasp-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.23.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "tye.asia"] [uri "/.git/config"] [unique_id "afkinaUeg0UzJqGlLHGr_wAAAAQ"]
show less
Web App Attack
๐ซ๐ท
Murazaki
2026-05-04 22:43:21
(4 months ago)
turn.balamb.fr 34.145.203.216 - - [04/May/2026:23:11:23 +0200] "GET /.git/config HTTP/1.1" 503 190 " ...
show more
turn.balamb.fr 34.145.203.216 - - [04/May/2026:23:11:23 +0200] "GET /.git/config HTTP/1.1" 503 190 "-" "-" "-"
...
show less
Hacking
๐ญ๐ฐ
www.winos.me
2026-05-04 22:42:17
(4 months ago)
Shield: Layer4 Port 9 Trap
Port Scan
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-05-04 21:59:23
(4 months ago)
Auto-ban: >3000 req/min op 2026-05-04
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-04 21:43:56
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.145.203.216 (216.203.145.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.145.203.216 (216.203.145.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 17:43:53.376082 2026] [security2:error] [pid 11851:tid 11851] [client 34.145.203.216:42758] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tvr77.garyrankin.com"] [uri "/.git/config"] [unique_id "afkTGY5_sZlJyytWbofxLgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-05-04 21:23:43
(4 months ago)
(mod_security) mod_security (id:949110) triggered by 34.145.203.216 (US/United States/216.203.145.34 ...
show more
(mod_security) mod_security (id:949110) triggered by 34.145.203.216 (US/United States/216.203.145.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
2026-05-04 21:03:06
(4 months ago)
34.145.203.216 - - [05/May/2026:05:03:05 +0800] "GET /.git/config HTTP/1.1" 404 196 "-" "-"
...
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-04 20:48:31
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 34.145.203.216 (216.203.145.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.145.203.216 (216.203.145.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 16:48:26.216149 2026] [security2:error] [pid 19803:tid 19803] [client 34.145.203.216:45652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tunabay.com"] [uri "/.git/config"] [unique_id "afkGGgb_gcBIHjo5giVaawAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack