๐ซ๐ฎ
NoaQT
2026-06-15 06:38:20
(1 hour ago)
2026-06-15T06:38:19.833267+00:00 ingress-1 haproxy[290]: 8.231.111.117:49926 [15/Jun/2026:06:38:19.8 ...
show more
2026-06-15T06:38:19.833267+00:00 ingress-1 haproxy[290]: 8.231.111.117:49926 [15/Jun/2026:06:38:19.832] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 292/277/0/0/0 0/0 "GET /public/.git/config HTTP/1.1"
2026-06-15T06:38:19.860671+00:00 ingress-1 haproxy[290]: 8.231.111.117:49928 [15/Jun/2026:06:38:19.860] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 291/276/0/0/0 0/0 "GET /dist/.git/config HTTP/1.1"
2026-06-15T06:38:19.881094+00:00 ingress-1 haproxy[290]: 8.231.111.117:49930 [15/Jun/2026:06:38:19.880] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 290/275/0/0/0 0/0 "GET /portal/.git/config HTTP/1.1"
2026-06-15T06:38:19.919403+00:00 ingress-1 haproxy[290]: 8.231.111.117:49934 [15/Jun/2026:06:38:19.918] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0 429 225 - - PR-- 289/274/0/0/0 0/0 "GET /wordpress/.git/config HTTP/1.1"
2026-06-15T06:38:20.001328+00:00 ingress-1 haproxy[290]: 8.231.111.117:49950 [15/Jun/2026:06:38:20.000] https_in~ https_in/<NOSRV> 0/-1/-1/-1/0
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:49:30
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:49:24.357491 2026] [security2:error] [pid 18941:tid 18941] [client 8.231.111.117:34530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "timelord2067.com"] [uri "/app/.git/config"] [unique_id "ai-SZFBEXng7v64XR_lYKAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 05:25:12
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:09:57
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:09:53.389130 2026] [security2:error] [pid 19692:tid 19692] [client 8.231.111.117:44722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jazziientertainment.com"] [uri "/build/.git/config"] [unique_id "ai-JIQydS30btz7K-MA5RQAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dbmwebdesign
2026-06-15 05:05:23
(2 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ท๐บ
DZBOT
2026-06-15 04:57:26
(2 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ง๐ช
cmbplf
2026-06-15 04:36:40
(3 hours ago)
1.155 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐ฆ๐บ
aranguren.org
2026-06-15 03:34:26
(4 hours ago)
8.231.111.117 - - [15/Jun/2026:13:34:25 +1000] "GET /.git/config HTTP/1.1" 200 263 "-" "Mozilla/5.0 ...
show more
8.231.111.117 - - [15/Jun/2026:13:34:25 +1000] "GET /.git/config HTTP/1.1" 200 263 "-" "Mozilla/5.0 (Macintosh; U; Mac OS X Mach-O; en-US; rv:2.0a) Gecko/20040614 Firefox/3.0.0"
8.231.111.117 - - [15/Jun/2026:13:34:25 +1000] "GET /backend/.git/config HTTP/1.1" 404 992 "-" "Mozilla/5.0 (Linux; Android 9; SM-G973W) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.89 Mobile Safari/537.36"
8.231.111.117 - - [15/Jun/2026:13:34:25 +1000] "GET /web/.git/config HTTP/1.1" 404 992 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.87 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 03:05:46
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:05:41.820714 2026] [security2:error] [pid 3983:tid 3983] [client 8.231.111.117:42862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wp.sonnyvo.com"] [uri "/v2/.git/config"] [unique_id "ai9sBWTfSr5-dDbi7WIsnAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 02:07:37
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:07:30.607205 2026] [security2:error] [pid 27360:tid 27360] [client 8.231.111.117:60364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.unwaved.com"] [uri "/app/.git/config"] [unique_id "ai9eYvGpmET2NLotRM18ZwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:51:04
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:50:59.539578 2026] [security2:error] [pid 12241:tid 12266] [client 8.231.111.117:52388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jrc3.com"] [uri "/blog/.git/config"] [unique_id "ai9ag_I8ttHCQYBTBPQHawAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 01:32:05
(6 hours ago)
Bot / scanning and/or hacking attempts: GET /v1/.git/config HTTP/1.1, GET /wordpress/.git/config HTT ...
show more
Bot / scanning and/or hacking attempts: GET /v1/.git/config HTTP/1.1, GET /wordpress/.git/config HTTP/1.1, GET /code/.git/config HTTP/1.1, GET /.git/config HTTP/1.1, GET /public/.git/config HTTP/1.1, GET /shop/.git/config HTTP/1.1, GET /www/.git/config HTTP/1.1, GET /app/.git/config HTTP/1.1
show less
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 01:19:03
(6 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:10:45
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.111.117 (117.111.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:10:38.254191 2026] [security2:error] [pid 10062:tid 10062] [client 8.231.111.117:46640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "expatcolombia.net"] [uri "/src/.git/config"] [unique_id "ai9RDstKGtzuef0VxbLrDAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 01:06:18
(6 hours ago)
Apache-badbot jail block
Bad Web Bot