๐ณ๐ฑ
homeshowdomain.nl
2026-07-29 22:03:31
(22 hours ago)
Auto-ban: >3000 req/min op 2026-07-29
Web App Attack
SSH
Hacking
๐ง๐ช
cmbplf
2026-07-29 17:39:13
(1 day ago)
1.968 requests with url.path */.git/config
1.956 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐ฆ๐น
mindrider
2026-07-29 17:06:55
(1 day ago)
35.232.193.203 - - [29/Jul/2026:19:06:51 +0200] "GET /.git/config HTTP/1.1" 404 2968 "-" "-" "-"
35. ...
show more
35.232.193.203 - - [29/Jul/2026:19:06:51 +0200] "GET /.git/config HTTP/1.1" 404 2968 "-" "-" "-"
35.232.193.203 - - [29/Jul/2026:19:06:52 +0200] "GET /.git/config HTTP/1.1" 404 2968 "-" "-" "-"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 16:49:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 12:49:02.678162 2026] [security2:error] [pid 4040:tid 4040] [client 35.232.193.203:33848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jrbentley.com"] [uri "/.git/config"] [unique_id "amou_lrGAceKGij85uLkigAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 16:24:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 12:24:30.502440 2026] [security2:error] [pid 3136655:tid 3136655] [client 35.232.193.203:44938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teapartytaxes.com"] [uri "/.git/config"] [unique_id "amopPoAN7PaelXEjWA9BYQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
services.org.pl
2026-07-29 16:07:32
(1 day ago)
open() "/var/www/html/.git/config" failed (2: No such file or directory), client: 35.232.193.203, se ...
show more
open() "/var/www/html/.git/config" failed (2: No such file or directory), client: 35.232.193.203, server: web.services.org.pl, request: "GET /.git/config HTTP/1.1", host: "web.services.org.pl"
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
YF
2026-07-29 16:00:24
(1 day ago)
Git config exposure probe
Web App Attack
๐ซ๐ฎ
cleverest.eu
2026-07-29 15:48:15
(1 day ago)
MimirWAF has 3 incidents from 3 distinct domains => {"bad_request_uri / vcs_probe","blacklisted_acce ...
show more
MimirWAF has 3 incidents from 3 distinct domains => {"bad_request_uri / vcs_probe","blacklisted_access / definite_repeat_offender"}
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 15:37:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 11:37:39.738374 2026] [security2:error] [pid 2468601:tid 2468601] [client 35.232.193.203:55736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ladbc.club"] [uri "/.git/config"] [unique_id "amoeQ5YZGlJ8gTSx427_uwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-07-29 15:24:25
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: URI: /.git/config | UA: Unknown User-Agent | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-29 15:16:03
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 15:13:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 11:13:19.598571 2026] [security2:error] [pid 555480:tid 555480] [client 35.232.193.203:52164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "austingrammer.com"] [uri "/.git/config"] [unique_id "amoYj9s7Rn4N3Sics_TnVAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 14:53:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 10:53:37.702140 2026] [security2:error] [pid 3751862:tid 3751862] [client 35.232.193.203:38446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michelle.mathewyoung.com"] [uri "/.git/config"] [unique_id "amoT8SzF2XPEaU0458CqGwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 14:32:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.232.193.203 (203.193.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 10:32:08.602558 2026] [security2:error] [pid 3305571:tid 3305571] [client 35.232.193.203:37306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brainstormer.visionremota.info"] [uri "/.git/config"] [unique_id "amoO6DGsTCmPESLhSWJeXAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-07-29 14:31:06
(1 day ago)
-:443 35.232.193.203 - - [29/Jul/2026:16:31:05 +0200] - "GET /.git/config HTTP/1.1" 403 6364 "-" "-"
Bad Web Bot