Anonymous
2026-07-29 07:00:00
(5 hours ago)
Apache probe; attempts=46; exact paths: /.git/config
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-07-27 15:40:22
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.61.218.230 - - [26/Jul/20 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.61.218.230 - - [26/Jul/2026:00:59:06 +0300] "GET /.git/config HTTP/1.1" 403 2430 "-" "-"
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-26 22:07:41
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-25.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
Lezetho
2026-07-26 07:00:22
(3 days ago)
DDoS, WebSpam, Web Attack, and Brute-force blocked by Cloudflare
DDoS Attack
Email Spam
Hacking
Brute-Force
๐ซ๐ท
mail.avx.gr
2026-07-25 21:59:06
(3 days ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.61.218.230 - - [26/Jul/20 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default-10-0-0-4:443 34.61.218.230 - - [26/Jul/2026:00:59:06 +0300] "GET /.git/config HTTP/1.1" 403 2430 "-" "-"
show less
Web App Attack
Anonymous
2026-07-25 21:53:58
(3 days ago)
T: f2b 404 5x
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-25 21:51:47
(3 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.61.218.230 (US/United States/230 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 34.61.218.230 (US/United States/230.218.61.34.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ซ๐ฎ
as211431.net
2026-07-25 21:31:46
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Empty string
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ต๐ฑ
UMP-PL
2026-07-25 21:07:10
(3 days ago)
Webserver scan (backups, phpadmin, etc.)
Web App Attack
๐ฌ๐ง
Smish
2026-07-25 21:03:35
(3 days ago)
HONEYPOT HIT --> Fail2ban time=1785013414 log=2026-07-25T22:03:34+01:00 ip=34.61.218.230 host=vps1.l ...
show more
HONEYPOT HIT --> Fail2ban time=1785013414 log=2026-07-25T22:03:34+01:00 ip=34.61.218.230 host=vps1.ldn.uk.bya.ac method=GET uri="/.git/config" status=404 ua="-" ref="-" rid=29e5fb0eaa71127031f78840e0556f1a
show less
Web App Attack
๐บ๐ธ
JustMeHere
2026-07-25 20:56:17
(3 days ago)
[Sat Jul 25 16:56:13.686124 2026] [security2:error] [pid 69015:tid 69071] [client 34.61.218.230:3778 ...
show more
[Sat Jul 25 16:56:13.686124 2026] [security2:error] [pid 69015:tid 69071] [client 34.61.218.230:37782] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "vpn.yorknation.com"] [uri "/.git/config"] [unique_id "amUi7YCfglNy_-PeThqanQAAAAU"]
...
show less
Web App Attack
๐ฌ๐ง
Axel
2026-07-25 20:33:57
(3 days ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
Anonymous
2026-07-25 20:29:35
(3 days ago)
Web Attack Gitscanner Traffic Detected
Web App Attack
๐ต๐ฑ
Budyn
2026-07-25 20:24:24
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: URI: /.git/config | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐จ๐ฆ
polycoda
2026-07-25 18:57:13
(3 days ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack