๐ณ๐ฑ
homeshowdomain.nl
2025-11-12 22:59:11
(7 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2025-11-11.
show less
Hacking
Web App Attack
SSH
๐น๐ท
rtbh.com.tr
2025-11-12 20:09:52
(7 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐ณ๐ฑ
jjnxpct
2025-11-12 04:45:32
(7 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.git/config (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .git/ found within REQUEST_FILENAME: /.git/config]
show less
Hacking
Web App Attack
๐ฌ๐ง
[email protected]
2025-11-12 01:03:14
(7 months ago)
...
Brute-Force
SSH
๐ณ๐ฑ
homeshowdomain.nl
2025-11-11 22:59:19
(7 months ago)
Auto-ban: >3000 req/min op 2025-11-11
Hacking
Web App Attack
SSH
๐ซ๐ท
masterguru
2025-11-11 20:11:08
(7 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐น๐ท
rtbh.com.tr
2025-11-11 20:09:51
(7 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
๐ง๐ช
DrLex0
2025-11-11 17:00:56
(7 months ago)
Slowly but relentlessly probing for git config files
45.55.52.52 80 - [11/Nov/2025:16:09:16 +0000] ...
show more
Slowly but relentlessly probing for git config files
45.55.52.52 80 - [11/Nov/2025:16:09:16 +0000] "GET /.git/config HTTP/1.1" 404 2439 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
45.55.52.52 443 - [11/Nov/2025:16:09:17 +0000] "GET /.git/config HTTP/1.1" 404 6038 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
45.55.52.52 80 - [11/Nov/2025:17:00:54 +0000] "GET /.git/config HTTP/1.1" 404 2439 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
45.55.52.52 443 - [11/Nov/2025:17:00:56 +0000] "GET /.git/config HTTP/1.1" 404 6038 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
jaapeldoorn
2025-11-11 16:51:00
(7 months ago)
[Tue Nov 11 09:21:51.496504 2025] [authz_core:error] [pid 1525934:tid 1525980] [client 45.55.52.52:5 ...
show more
[Tue Nov 11 09:21:51.496504 2025] [authz_core:error] [pid 1525934:tid 1525980] [client 45.55.52.52:57386] AH01630: client denied by server configuration: /var/www
[Tue Nov 11 11:18:38.304812 2025] [authz_core:error] [pid 1525934:tid 1525981] [client 45.55.52.52:47612] AH01630: client denied by server configuration: /var/www
[Tue Nov 11 17:50:59.526769 2025] [authz_core:error] [pid 1525935:tid 1525951] [client 45.55.52.52:40044] AH01630: client denied by server configuration: /var/www
...
show less
Brute-Force
๐ฉ๐ช
DocNetzwerk
2025-11-11 16:33:20
(7 months ago)
(mod_security) mod_security triggered on hostname [redacted] 45.55.52.52 (US/United States/-)
SQL Injection
Anonymous
2025-11-11 16:30:44
(7 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2025-11-11 16:12:30
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.55.52.52 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.55.52.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 11 11:12:27.729376 2025] [security2:error] [pid 12430:tid 12430] [client 45.55.52.52:41138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "disnet-m.com"] [uri "/.git/config"] [unique_id "aRNgays2vqosCYEYgWnVAAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-11 13:41:17
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.55.52.52 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.55.52.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 11 08:41:11.660866 2025] [security2:error] [pid 12322:tid 12322] [client 45.55.52.52:49154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "digitalracemedia.com"] [uri "/.git/config"] [unique_id "aRM89zwmVzkDM3m3YCxU0QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
stinpriza
2025-11-11 13:34:22
(7 months ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-11 12:36:03
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 45.55.52.52 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.55.52.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 11 07:35:57.002391 2025] [security2:error] [pid 24072:tid 24072] [client 45.55.52.52:42332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dpcreamery.com"] [uri "/.git/config"] [unique_id "aRMtrbK01kQw4BJ12denDQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack