๐ฎ๐ณ
evicky2002
2026-05-20 04:30:47
(1 month ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ณ๐ฑ
homeshowdomain.nl
2026-05-06 22:01:22
(1 month ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-05.
show less
Web App Attack
SSH
Hacking
๐ฌ๐ง
openstrike.co.uk
2026-05-06 05:13:22
(1 month ago)
2 attacks on VC URLs:
GET /.git/config HTTP/1.1
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-05 22:57:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 05 18:57:43.521359 2026] [security2:error] [pid 477:tid 477] [client 35.243.204.128:55208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spores101.com"] [uri "/.git/config"] [unique_id "afp150S8yakifKe0BBvRQAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Murazaki
2026-05-05 22:47:09
(1 month ago)
turn.balamb.fr 35.243.204.128 - - [05/May/2026:15:37:20 +0200] "GET /.git/config HTTP/1.1" 503 190 " ...
show more
turn.balamb.fr 35.243.204.128 - - [05/May/2026:15:37:20 +0200] "GET /.git/config HTTP/1.1" 503 190 "-" "-" "-"
...
show less
Hacking
๐ท๐ด
INTEQ
2026-05-05 22:41:03
(1 month ago)
Web attack from 35.243.204.128
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-05 22:25:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 05 18:24:55.902091 2026] [security2:error] [pid 30798:tid 30798] [client 35.243.204.128:40028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spiht.com"] [uri "/.git/config"] [unique_id "afpuN2M08whq0c5KP1ZFfgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-05 21:59:27
(1 month ago)
Auto-ban: >3000 req/min op 2026-05-05
Web App Attack
SSH
Hacking
๐ฉ๐ช
simsung
2026-05-05 21:48:16
(1 month ago)
35.243.204.128 - - [05/May/2026:21:48:15 +0000] "GET /.git/config HTTP/1.1" 403 146 "-" "-"
...
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-05 21:38:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 05 17:37:57.293557 2026] [security2:error] [pid 24096:tid 24096] [client 35.243.204.128:47014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spdhgllc.com"] [uri "/.git/config"] [unique_id "afpjNfyEG9SJpsJeR_dULgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
kranem
2026-05-05 21:00:44
(1 month ago)
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (G ...
show more
Triggered Cloudflare WAF from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-05-05T18:04:01Z
User-Agent: empty
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-05 21:00:34
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.243.204.128 (128.204.243.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 05 17:00:27.845738 2026] [security2:error] [pid 17350:tid 17350] [client 35.243.204.128:52592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spacebooger.com.mms-boss.net"] [uri "/.git/config"] [unique_id "afpaa_GF5t6IUQsGJDmzHAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Charlesiv
2026-05-05 20:01:39
(1 month ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-05-05T19:26:49Z
Ray ID: 9f722395ed971646
UA: Empty string
show less
Bad Web Bot
๐น๐ญ
thaizone.com
2026-05-05 19:51:48
(1 month ago)
Brute Force Attack on a Web Resources (probe) #1
DDoS Attack
Web Spam
Brute-Force
Web App Attack
Anonymous
2026-05-05 19:25:03
(1 month ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack