Anonymous
2026-08-28 04:41:01
(20 hours ago)
Scanner hitting /.git/HEAD on ara-oman.com (DZ-ALGIERS-45-130-202-0) โ aaguard
Brute-Force
Port Scan
Anonymous
2026-08-26 22:21:32
(2 days ago)
GET /.git/HEAD HTTP/1.1
...
Web App Attack
๐ฌ๐ง
kie
2026-08-26 21:34:55
(2 days ago)
26-08-2026:21:34:16UTC [Nginx Web Server] Suspicious web request: path:/.git (2 request(s)).
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MyGlobalFlowers
2026-08-26 18:48:16
(2 days ago)
Multiple WAF Violations
Web App Attack
๐จ๐ฆ
dispensight
2026-08-26 12:00:00
(2 days ago)
SecureLeaf/Dispensight honeypot+origin telemetry 08-26 Aug2026 | credential/config exposure probes ( ...
show more
SecureLeaf/Dispensight honeypot+origin telemetry 08-26 Aug2026 | credential/config exposure probes (.env/.git enum) | 1 recon req / 1 total; cats: 15=Hacking,19=Bad Web Bot,21=Web App Attack
show less
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-08-24 23:07:09
(4 days ago)
Automated web scanner. Requested suspicious paths: /.git/HEAD. UTC: 2026-08-24 22:50:26.
Web App Attack
๐บ๐ธ
xxkodedxx
2026-08-24 17:38:39
(4 days ago)
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 1ร edge-block in 10 ...
show more
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 1ร edge-block in 10m window.
Origin: EG / AS137409 GSL Networks Pty LTD
Active: 17:38:33 UTC
Volume: 1 HTTP req
Probed: /files/
Status mix: 444ร1
Vhost fishing: 67.217.240.72
UA: "Mozilla/5.0"
Auto-banned 30d. zorvexus-banner.
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
pinguin
2026-08-24 02:13:10
(4 days ago)
Triggered Cloudflare WAF (bic) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint ...
show more
Triggered Cloudflare WAF (bic) from DE.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/HEAD
UA: Python-urllib/3.10
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
FreeMyIP
2026-08-24 00:08:37
(5 days ago)
Automated fail2ban report: web application attack / scanning for exploitable paths.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 21:29:24
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 17:29:20.153120 2026] [security2:error] [pid 8434:tid 8434] [client 45.130.203.160:21557] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coyotepoet.com"] [uri "/.git/HEAD"] [unique_id "aotmMGv9yLQWOGRBqSwnuAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 19:54:08
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 15:54:02.736426 2026] [security2:error] [pid 25756:tid 25779] [client 45.130.203.160:27185] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "afghanistantraveller.com.adetnw.com"] [uri "/.git/HEAD"] [unique_id "aotP2jv5CLKG7xOqdePT3wAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-08-23 15:41:22
(5 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฉ๐ช
Erpelstolz
2026-08-23 05:54:31
(5 days ago)
external host: 45.130.203.160 - - [23/Aug/2026:07:54:30 +0200] "GET /login/ HTTP/1.1" 200 5907 "-" " ...
show more
external host: 45.130.203.160 - - [23/Aug/2026:07:54:30 +0200] "GET /login/ HTTP/1.1" 200 5907 "-" "Mozilla/5.0" CF-Ray:- CF-IP:-
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 03:01:34
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 45.130.203.160 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 45.130.203.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 23:01:29.133777 2026] [security2:error] [pid 8327:tid 8327] [client 45.130.203.160:53455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jamestaylorart.com"] [uri "/.git/HEAD"] [unique_id "aopiiRbc8uaWg-hnHX4opAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-22 18:04:59
(6 days ago)
[22/Aug/2026:21:04:58 +0300] -- 45.130.203.160 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack