๐ช๐ธ
Gem
2024-10-11 22:33:08
(1 year ago)
Unauthorized web scan.
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2024-10-10 05:12:38
(1 year ago)
8 attacks on VC URLs:
GET /.git/HEAD HTTP/1.1
Hacking
๐ฌ๐ง
Swiptly
2024-10-09 22:40:41
(1 year ago)
Multiple critical ModSecurity events
...
Web Spam
Bad Web Bot
Anonymous
2024-10-09 22:00:08
(1 year ago)
[23:00:07] 0: Scanning for exploits - /.git/HEAD
Web App Attack
๐ฉ๐ช
Bedios GmbH
2024-10-09 16:03:33
(1 year ago)
Login credentials theft attempt
Hacking
๐บ๐ธ
physke
2024-10-09 11:27:38
(1 year ago)
REQUESTED PAGE: /.git/HEAD
Web App Attack
Anonymous
2024-10-09 05:52:10
(1 year ago)
fail2ban apache-modsecurity [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/.git/HEAD ...
show more
fail2ban apache-modsecurity [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/.git/HEAD"]
show less
Web App Attack
๐ฉ๐ช
ut-addicted.com
2024-10-09 05:24:40
(1 year ago)
\[Wed Oct 09 07:24:39.316505 2024\] \[:error\] \[pid 26288:tid 140449268291328\] \[client 79.62.3.17 ...
show more
\[Wed Oct 09 07:24:39.316505 2024\] \[:error\] \[pid 26288:tid 140449268291328\] \[client 79.62.3.176:44362\] \[client 79.62.3.176\] ModSecurity: Access denied with code 403 \(phase 2\). Operator GE matched 5 at TX:anomaly_score. \[file "/usr/local/apache/modsecurity-owasp-latest/rules/REQUEST-949-BLOCKING-EVALUATION.conf"\] \[line "57"\] \[id "949110"\] \[msg "Inbound Anomaly Score Exceeded \(Total Score: 5\)"\] \[severity "CRITICAL"\] \[tag "application-multi"\] \[tag "language-multi"\] \[tag "platform-multi"\] \[tag "attack-generic"\] \[hostname "crx.it"\] \[uri "/.git/HEAD"\] \[unique_id "ZwYTl6rWJcQGqLx-uQNKggAAANQ"\]
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2024-10-09 04:18:20
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (IT/Italy/host-79-62-3-176.business ...
show more
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (IT/Italy/host-79-62-3-176.business.telecomitalia.it): 1 in the last 28800 secs; Ports: *; Direction: 0; Trigger: LF_MODSEC
show less
Brute-Force
SSH
๐ฉ๐ช
Mr-Money
2024-10-09 02:09:14
(1 year ago)
79.62.3.176 - - [09/Oct/2024:04:09:12 +0200] "GET /.git/HEAD HTTP/1.1" 404 5636 "-" "Mozilla/5.0 (X1 ...
show more
79.62.3.176 - - [09/Oct/2024:04:09:12 +0200] "GET /.git/HEAD HTTP/1.1" 404 5636 "-" "Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
mxinfra
2024-10-09 01:33:01
(1 year ago)
Blocked by Fail2Ban (plesk-modsecurity)
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-08 16:01:08
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (host-79-62-3-176.business.telecomi ...
show more
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (host-79-62-3-176.business.telecomitalia.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 08 12:01:03.099098 2024] [security2:error] [pid 3944:tid 3944] [client 79.62.3.176:33030] [client 79.62.3.176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sundaymooddesigns.com"] [uri "/.git/HEAD"] [unique_id "ZwVXPzZ5OTDReBtr_3Zg8QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2024-10-08 14:05:12
(1 year ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-08 11:00:27
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (host-79-62-3-176.business.telecomi ...
show more
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (host-79-62-3-176.business.telecomitalia.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 08 07:00:23.578325 2024] [security2:error] [pid 15281:tid 15281] [client 79.62.3.176:60448] [client 79.62.3.176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "railfanfromseo.com"] [uri "/.git/HEAD"] [unique_id "ZwUQxz_vb5IEk-vZuEOWxAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-10-08 06:51:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (host-79-62-3-176.business.telecomi ...
show more
(mod_security) mod_security (id:210492) triggered by 79.62.3.176 (host-79-62-3-176.business.telecomitalia.it): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 08 02:51:28.926384 2024] [security2:error] [pid 13539:tid 13539] [client 79.62.3.176:45936] [client 79.62.3.176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yakski.com"] [uri "/.git/HEAD"] [unique_id "ZwTWcGHVH1_8AzoZ-RjZOAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack