๐ณ๐ฑ
homeshowdomain.nl
2026-07-31 21:59:51
(39 minutes ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-30.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-07-30 21:59:32
(1 day ago)
Auto-ban: >3000 req/min op 2026-07-30
Web App Attack
SSH
Hacking
๐ณ๐ด
jad-abuse
2026-07-30 20:02:12
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 3 hits.
show less
Web App Attack
๐บ๐ธ
daveoctober
2026-07-30 19:58:47
(1 day ago)
October Sentinel: honeypot triggered
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-30 19:57:44
(1 day ago)
5.161.255.152 - - [30/Jul/2026:22:57:31 +0300] "GET /.git/config HTTP/1.1" 301 583 "-" "Mozilla/5.0 ...
show more
5.161.255.152 - - [30/Jul/2026:22:57:31 +0300] "GET /.git/config HTTP/1.1" 301 583 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 Chrome/131.0.0.0"
5.161.255.152 - - [30/Jul/2026:22:57:43 +0300] "GET /.git/config HTTP/1.1" 301 607 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 Chrome/131.0.0.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 19:55:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 5.161.255.152 (static.152.255.161.5.clients.you ...
show more
(mod_security) mod_security (id:210492) triggered by 5.161.255.152 (static.152.255.161.5.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 15:55:50.464915 2026] [security2:error] [pid 24657:tid 24657] [client 5.161.255.152:60694] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nchsfootballgolfouting.com"] [uri "/.git/config"] [unique_id "amusRn1Ddm9aAMF4s2Ud0QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-30 19:55:05
(1 day ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฉ๐ช
Teufel100
2026-07-30 19:52:28
(1 day ago)
ModSecurity rejected a query
Brute-Force
Hacking
Web App Attack
๐ฆ๐บ
Klaverstyn
2026-07-30 19:51:48
(1 day ago)
Repeated 403 Forbidden responses
Web App Attack
๐ฉ๐ช
4server
2026-07-30 19:44:06
(1 day ago)
[ThuJul3021:44:03.0190392026][security2:error][pid3372157:tid3372225][client5.161.255.152:0]ModSecur ...
show more
[ThuJul3021:44:03.0190392026][security2:error][pid3372157:tid3372225][client5.161.255.152:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"domoticaswiss.ch\"][uri\"/.git/config\"][unique_id\"amupg-3gyDc99ohl5a3O6wAAAIE\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 19:40:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 5.161.255.152 (static.152.255.161.5.clients.you ...
show more
(mod_security) mod_security (id:210492) triggered by 5.161.255.152 (static.152.255.161.5.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 15:40:06.901124 2026] [security2:error] [pid 1770035:tid 1770035] [client 5.161.255.152:49138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "koidivision.com"] [uri "/.git/config"] [unique_id "amuollxyst1Kqdn8C3x4zQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-30 18:50:01
(1 day ago)
suspicious request in access.log
Web App Attack
๐ฌ๐ง
consul.to
2026-07-30 18:31:21
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 18:31:18
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 5.161.255.152 (static.152.255.161.5.clients.you ...
show more
(mod_security) mod_security (id:210492) triggered by 5.161.255.152 (static.152.255.161.5.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 14:31:12.184245 2026] [security2:error] [pid 1148406:tid 1148406] [client 5.161.255.152:53260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "allieleejieun.click"] [uri "/.git/config"] [unique_id "amuYcOThJ7CsxBxxtg1GRgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack