๐ฎ๐ณ
evicky2002
2026-08-27 06:00:33
(12 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
openstrike.co.uk
2026-08-27 05:14:11
(13 hours ago)
9 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-26 20:08:02
(22 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Dominik Lysiak
2026-08-26 19:43:36
(23 hours ago)
35.221.173.161 - - [26/Aug/2026:21:31:03 +0200] "GET /.git/config HTTP/1.1" 200 30203 "-" "Mozilla/5 ...
show more
35.221.173.161 - - [26/Aug/2026:21:31:03 +0200] "GET /.git/config HTTP/1.1" 200 30203 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
35.221.173.161 - - [26/Aug/2026:21:35:45 +0200] "GET /.git/config HTTP/1.1" 200 30204 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
35.221.173.161 - - [26/Aug/2026:21:43:36 +0200] "GET /.git/config HTTP/1.1" 499 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Web App Attack
Anonymous
2026-08-26 19:27:21
(23 hours ago)
35.221.173.161 - - [26/Aug/2026:19:27:21 +0000] "GET /.git/config HTTP/1.1" 404 4306 "-" "Mozilla/5. ...
show more
35.221.173.161 - - [26/Aug/2026:19:27:21 +0000] "GET /.git/config HTTP/1.1" 404 4306 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
as211431.net
2026-08-26 19:22:41
(23 hours ago)
Triggered Cloudflare WAF (firewallCustom) from TW.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from TW.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-26 18:57:59
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.173.161 (161.173.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.173.161 (161.173.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 14:57:54.561626 2026] [security2:error] [pid 18741:tid 18741] [client 35.221.173.161:49496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "billhoy.com"] [uri "/.git/config"] [unique_id "ao83Mp-mneR_6BUsR8SO8wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 18:44:51
(1 day ago)
apache vulnerability scan
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-26 18:43:56
(1 day ago)
cloudlinux2 fail2ban: 2026-08-26 20:39:57,166 fail2ban.filter [1775]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-26 20:39:57,166 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 104.23.160.107 - 2026-08-26 20:39:57cloudlinux2 fail2ban: 2026-08-26 20:39:57,206 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 104.23.160.164 - 2026-08-26 20:39:57cloudlinux2 fail2ban: 2026-08-26 20:40:24,019 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 35.252.140.75 - 2026-08-26 20:40:24cloudlinux2 fail2ban: 2026-08-26 20:40:39,547 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 59.103.216.96 - 2026-08-26 20:40:39cloudlinux2 fail2ban: 2026-08-26 20:40:58,530 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 35.234.59.163 - 2026-08-26 20:40:58cloudlinux2 fail2ban: 2026-08-26 20:40:59,329 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 35.234.59.163 - 2026-08-26 20:40:59cloudlinux2 fail2ban: 2026-08-26 20:41:15,652 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 35.221.173.161 - 2026-08-26
show less
Brute-Force
๐จ๐ฆ
polycoda
2026-08-26 18:38:20
(1 day ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 18:28:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.221.173.161 (161.173.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.173.161 (161.173.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 14:28:36.963201 2026] [security2:error] [pid 10189:tid 10189] [client 35.221.173.161:23352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avvmarchetticollini.it"] [uri "/.git/config"] [unique_id "ao8wVM0Zu8wkFwl7q6rgrgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
kosada.com
2026-08-26 18:28:21
(1 day ago)
Web vulnerability probing: /.git/config
Web App Attack
๐ฌ๐ง
pinguin
2026-08-26 18:27:44
(1 day ago)
Triggered Cloudflare WAF (firewallManaged) from TW.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET meth ...
show more
Triggered Cloudflare WAF (firewallManaged) from TW.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
Anonymous
2026-08-26 18:20:17
(1 day ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ฎ๐ฉ
Burayot
2026-08-26 18:16:52
(1 day ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.221.173.161 (TW/Taiwan/161.173.2 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.221.173.161 (TW/Taiwan/161.173.221.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack