🇫🇷
Catalin Negru
2026-09-08 04:06:44
(4 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇧🇷
dominioz
2026-09-08 03:07:01
(5 hours ago)
2026-09-08 03:06:40 GET /.git/config - - 34.83.112.32 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+ ...
show more
2026-09-08 03:06:40 GET /.git/config - - 34.83.112.32 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 476
2026-09-08 03:06:40 GET /.env - - 34.83.112.32 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 476
2026-09-08 03:06:53 GET /app/.env - - 34.83.112.32 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 476
2026-09-08 03:06:53 GET /apps/.env - - 34.83.112.32 HTTP/1.1 Mozilla/5.0+(Macintosh;+Intel+Mac+OS+X+10_15_7)+AppleWebKit/537.36+(KHTML,+like+Gecko)+Chrome/131.0.0.0+Safari/537.36 - 301 476
...
show less
Web App Attack
🇳🇱
Savvii
2026-09-08 03:03:13
(5 hours ago)
20 attempts against mh-misbehave-ban on ceres
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
andypiper
2026-09-08 01:03:03
(7 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 00:17:24
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.83.112.32 (32.112.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.83.112.32 (32.112.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 20:17:18.387186 2026] [security2:error] [pid 14492:tid 14492] [client 34.83.112.32:45422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tarekshohaieb.online"] [uri "/.git/config"] [unique_id "ap9UDvVbmOs6xTFi8xtB8AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
ger-stg-sifi1
2026-09-08 00:10:03
(8 hours ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
🇳🇿
Antinson
2026-09-07 20:27:36
(12 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇩🇪
kkw
2026-09-07 19:25:34
(13 hours ago)
[REDACTED] 34.83.112.32 - - [07/Sep/2026:21:25:34 +0200] "GET /.git/config HTTP/1.1" 404 559 "-" "Mo ...
show more
[REDACTED] 34.83.112.32 - - [07/Sep/2026:21:25:34 +0200] "GET /.git/config HTTP/1.1" 404 559 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-07 19:03:42
(13 hours ago)
1.211 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 16:50:34
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.83.112.32 (32.112.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.83.112.32 (32.112.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 12:50:30.002470 2026] [security2:error] [pid 1421:tid 1421] [client 34.83.112.32:36134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taptaptennis.abecasis.com"] [uri "/.git/config"] [unique_id "ap7rVjqu5H1lExvEwAfoOwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 16:24:25
(16 hours ago)
[ssd1.kdns.gr] httpd-config-scan: sites=www.tacticalarmour.gr; logs=/var/log/httpd/domains/tacticala ...
show more
[ssd1.kdns.gr] httpd-config-scan: sites=www.tacticalarmour.gr; logs=/var/log/httpd/domains/tacticalarmour.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
🇺🇸
mnsf
2026-09-07 16:05:23
(16 hours ago)
Abuse Detected (10)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 15:59:44
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.83.112.32 (32.112.83.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.83.112.32 (32.112.83.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 11:59:36.861953 2026] [security2:error] [pid 7616:tid 7616] [client 34.83.112.32:50146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tactara.net"] [uri "/.git/config"] [unique_id "ap7faBw5WXqN5O5BTAC8LQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-07 15:46:07
(17 hours ago)
[07/Sep/2026:18:46:07 +0300] -- 34.83.112.32 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more
[07/Sep/2026:18:46:07 +0300] -- 34.83.112.32 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-07 13:42:14
(19 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-07 13:42 UTC
show less
Hacking
Web App Attack