🇩🇪
hidemail.app
2026-09-13 19:29:45
(12 hours ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
🇫🇷
spot
2026-09-13 18:52:31
(12 hours ago)
34.50.42.220 - - [13/Sep/2026:19:52:30 +0100] "GET /.git/config HTTP/1.1" 404 543 "-" "Mozilla/5.0 ( ...
show more
34.50.42.220 - - [13/Sep/2026:19:52:30 +0100] "GET /.git/config HTTP/1.1" 404 543 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
🇩🇪
ger-stg-sifi1
2026-09-13 16:40:18
(14 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-09-13 15:14:37
(16 hours ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
🇳🇱
Site.eu
2026-09-13 11:02:46
(20 hours ago)
Excessive multi-domain requests
Brute-Force
🇮🇳
evicky2002
2026-09-13 06:00:01
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
🇳🇱
Site.eu
2026-09-12 18:44:38
(1 day ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-12 18:29:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 14:29:02.176084 2026] [security2:error] [pid 20859:tid 20859] [client 34.50.42.220:36848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rizkallah.menagri.com"] [uri "/.git/config"] [unique_id "aqWZ7hY0bbzuLxEBaBtUzgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
i-turnradio.nl
2026-09-12 16:58:29
(1 day ago)
2026-09-12 @ 18:58:19 (CET) ~ Blocked for trying to access: /.env.local
Web App Attack
🇩🇪
Lino Project
2026-09-12 15:49:20
(1 day ago)
34.50.42.220 - - [12/Sep/2026:17:49:16 +0200] "GET /.git/config HTTP/1.1" 403 179 "-" "Mozilla/5.0 ( ...
show more
34.50.42.220 - - [12/Sep/2026:17:49:16 +0200] "GET /.git/config HTTP/1.1" 403 179 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-12 15:04:33
(1 day ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-12 15:04 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 14:29:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 10:29:27.488320 2026] [security2:error] [pid 26865:tid 26865] [client 34.50.42.220:46854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rivervinylcafe.info"] [uri "/.git/config"] [unique_id "aqVhxyCJ-w4l3n20GzIoowAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 13:38:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 09:38:06.127903 2026] [security2:error] [pid 3706058:tid 3706065] [client 34.50.42.220:58034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "riversideturners.com"] [uri "/.git/config"] [unique_id "aqVVvl8auYnOrx9871UQLQAAAEU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 13:11:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 09:11:08.267670 2026] [security2:error] [pid 17961:tid 17961] [client 34.50.42.220:46834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "riversidecabinswv.com"] [uri "/.git/config"] [unique_id "aqVPbNVcng3oElkGubMXpwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 10:53:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.50.42.220 (220.42.50.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 06:53:15.259750 2026] [security2:error] [pid 2553111:tid 2553111] [client 34.50.42.220:34212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rivercityacct.com"] [uri "/.git/config"] [unique_id "aqUvG_ixF_EmfRdofLGDzgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack