๐ณ๐ฟ
Tripwire
2026-06-01 19:46:58
(3 weeks ago)
Scanning for exploits - /.env.local
Web App Attack
Anonymous
2026-06-01 12:15:14
(3 weeks ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
Anonymous
2026-06-01 07:57:27
(3 weeks ago)
Blocked: Reason='Suspicious traffic score=60 (review-based detection)'; Requests=20
Hacking
๐ฉ๐ช
todix
2026-05-31 13:40:23
(3 weeks ago)
Web App Attack Exploid from 2.25.132.95
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 11:28:03
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 07:27:58.818840 2026] [security2:error] [pid 21786:tid 21786] [client 2.25.132.95:36736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maleein.com"] [uri "/.git/config"] [unique_id "ahwbPjjAh0sVoQ8K5bfWpwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
Bots.go.to.hell
2026-05-30 18:22:05
(3 weeks ago)
This IP was detected by CrowdSec triggering LePresidente/http-generic-401-bf
Web App Attack
Brute-Force
๐บ๐ธ
mnsf
2026-05-30 06:05:35
(3 weeks ago)
Abuse Detected (2)
Brute-Force
Web App Attack
๐ฉ๐ช
Blexyel
2026-05-30 03:17:38
(3 weeks ago)
2.25.132.95 - - [30/May/2026:05:17:37 +0200] "GET /.git/config HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Wi ...
show more
2.25.132.95 - - [30/May/2026:05:17:37 +0200] "GET /.git/config HTTP/1.1" 404 14 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-29 18:05:53
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 29 14:05:46.611880 2026] [security2:error] [pid 5026:tid 5026] [client 2.25.132.95:39806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.furryfriendzy.org"] [uri "/.git/config"] [unique_id "ahnVekSBGCbS5zQE61ItsAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Blexyel
2026-05-29 13:25:18
(3 weeks ago)
2.25.132.95 - - [29/May/2026:15:25:17 +0200] "GET /.git/config HTTP/1.1" 200 2116 "-" "Mozilla/5.0 ( ...
show more
2.25.132.95 - - [29/May/2026:15:25:17 +0200] "GET /.git/config HTTP/1.1" 200 2116 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/147.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ซ๐ฎ
YF
2026-05-28 03:02:20
(4 weeks ago)
Environment file probe
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-27 21:59:27
(4 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-26.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
ger-stg-sifi1
2026-05-27 15:28:51
(4 weeks ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-27 01:23:03
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 21:22:59.275155 2026] [security2:error] [pid 18023:tid 18023] [client 2.25.132.95:34452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harrisconcepts.com.coastalpirates.com"] [uri "/.git/config"] [unique_id "ahZHczUwL_TiizbzNWkpQQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-26 23:58:41
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the ...
show more
(mod_security) mod_security (id:210492) triggered by 2.25.132.95 (srv1704511.hstgr.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 19:58:36.556145 2026] [security2:error] [pid 6409:tid 6419] [client 2.25.132.95:49432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ilenefletcher.com.richardleeweatherman.com"] [uri "/.git/HEAD"] [unique_id "ahYzrA8kwC-2BK4R4h_ljgAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack