π³π±
homeshowdomain.nl
2026-09-06 21:59:58
(1 week ago)
Auto-ban: >3000 req/min op 2026-09-06
Web App Attack
SSH
Hacking
π¬π§
openstrike.co.uk
2026-09-06 05:13:32
(1 week ago)
12 attacks on VC URLs:
GET /html/.git/config HTTP/1.1
Hacking
πΊπΈ
TPI-Abuse
2026-09-06 05:08:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 01:08:25.461055 2026] [security2:error] [pid 29839:tid 29839] [client 35.189.231.133:48970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "curtmudgins.com"] [uri "/www/.git/config"] [unique_id "apz1STHp9LK48SHUK-lgqAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
raph
2026-09-06 00:29:22
(1 week ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-05 22:25:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 18:24:58.340558 2026] [security2:error] [pid 26314:tid 26314] [client 35.189.231.133:33172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.crazypencil.com"] [uri "/.git/config"] [unique_id "apyWuqVO8Pah5jzRBjETtgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-09-05 20:34:22
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 35.189.231.133 (BE/Belgium/133.231.189.35.bc.go ...
show more
(mod_security) mod_security (id:949110) triggered by 35.189.231.133 (BE/Belgium/133.231.189.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
π«π·
dynamix
2026-09-05 10:50:05
(1 week ago)
Multiple WAF Violations
Web App Attack
π³π±
i-turnradio.nl
2026-09-05 10:46:10
(1 week ago)
2026-09-05 @ 12:46:10 (CET) ~ Blocked for trying to access: /app/.git/config
Web App Attack
πΈπͺ
vaia.cloud
2026-09-04 23:05:02
(2 weeks ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-04 22:27:34
(2 weeks ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
π³π΄
jad-abuse
2026-09-04 21:18:00
(2 weeks ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 24 hits.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-04 21:17:02
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:16:56.081824 2026] [security2:error] [pid 3096:tid 3124] [client 35.189.231.133:43756] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rodela.com"] [uri "/wordpress/.git/config"] [unique_id "aps1SDcjuZArSLt6e1P1wgAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
e.fierstra
2026-09-04 21:08:12
(2 weeks ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-04 19:19:01
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (133.231.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:18:53.490516 2026] [security2:error] [pid 12438:tid 12438] [client 35.189.231.133:39026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamsewusa.com"] [uri "/var/www/.git/config"] [unique_id "apsZnXOVJf6K024yPT3R4AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
SysAdmin Dylan
2026-09-04 19:04:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (BE/Belgium/133.231.189.35.bc.go ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.231.133 (BE/Belgium/133.231.189.35.bc.googleusercontent.com): 10 in the last 3600 secs
show less
Brute-Force