๐ณ๐ฑ
homeshowdomain.nl
2026-07-30 22:06:59
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-29.
show less
Web App Attack
SSH
Hacking
๐ฎ๐ณ
evicky2002
2026-07-30 06:00:00
(1 day ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
openstrike.co.uk
2026-07-30 05:13:55
(1 day ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
Anonymous
2026-07-30 04:31:43
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐ฉ๐ช
sdos.es
2026-07-30 00:31:40
(2 days ago)
"Restricted File Access Attempt - Matched Data: /.git/ found within REQUEST_FILENAME: /.git/config"
Web App Attack
๐ฌ๐ง
foxxelabs
2026-07-30 00:29:54
(2 days ago)
Automated report from FoxxeLabs Sentinel. Path probed: /.git/config | Project: anseo | Reason(s): Kn ...
show more
Automated report from FoxxeLabs Sentinel. Path probed: /.git/config | Project: anseo | Reason(s): Known exploit path: /.git/config; AbuseIPDB score: 100/100 | User-Agent: none
show less
Web App Attack
๐จ๐ฆ
csnavarro2020
2026-07-30 00:01:01
(2 days ago)
Automated scan for known vulnerable/nonexistent path: /.git/config
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-29 23:45:09
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 19:45:05.738548 2026] [security2:error] [pid 456499:tid 456499] [client 35.237.12.111:44556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "store.go4food.com"] [uri "/.git/config"] [unique_id "amqQgfCuVKjk5TXBFSNaJgAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 23:06:46
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 19:06:42.953481 2026] [security2:error] [pid 3230874:tid 3230874] [client 35.237.12.111:43810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stoneybluff.com"] [uri "/.git/config"] [unique_id "amqHgtrLsNwGxUD2A23v4wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-29 22:35:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 18:35:08.681272 2026] [security2:error] [pid 376916:tid 376916] [client 35.237.12.111:37778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "st-kitts-and-nevis-yacht-registration.com.boatregistrationdelaware.com"] [uri "/.git/config"] [unique_id "amqAHFSUvHgnxu6VAEPy5wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-07-29 22:35:05
(2 days ago)
[Thu Jul 30 08:35:04.677035 2026] [security2:error] [pid 465667] [client 35.237.12.111:34022] [clien ...
show more
[Thu Jul 30 08:35:04.677035 2026] [security2:error] [pid 465667] [client 35.237.12.111:34022] [client 35.237.12.111] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "stkildashule.org.au"] [uri "/.git/config"] [unique_id "amqAGKcS5mqRQwdgfMCG4QAAAA8"]
...
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-29 22:09:35
(2 days ago)
Auto-ban: >3000 req/min op 2026-07-29
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-29 21:26:05
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 17:25:58.311677 2026] [security2:error] [pid 32602:tid 32602] [client 35.237.12.111:52266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theflyingdutchman.us"] [uri "/.git/config"] [unique_id "ampv5lQbUlvSWjjKpf-JRgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
helouism
2026-07-29 21:17:31
(2 days ago)
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /.git/config via rule: / ...
show more
[Laravel HoneypotPlus] Automated report - Honeypot access detected on path: /.git/config via rule: /.git
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-29 20:57:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.237.12.111 (111.12.237.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 29 16:57:21.219957 2026] [security2:error] [pid 262189:tid 262189] [client 35.237.12.111:48468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thedreamcatchers.eu"] [uri "/.git/config"] [unique_id "amppMd-vrzrdYob-43FCxAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack