๐ซ๐ฎ
inlink.ltd
2026-05-15 06:27:57
(3 weeks ago)
Known malicious PHP file or CMS probe
Web App Attack
๐ซ๐ท
masterguru
2026-04-02 20:22:28
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 104.207.35.135 (US/United States/-): 1 in the ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 104.207.35.135 (US/United States/-): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ฆ๐บ
RedBear IT
2026-03-26 10:00:37
(2 months ago)
"DDoS against public endpoint"
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 20:33:26
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 15:33:22.581220 2026] [security2:error] [pid 5325:tid 5352] [client 104.207.35.135:56519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arcontractingservices.com"] [uri "/app/.env"] [unique_id "aYznkjKc8I2EPAkKf4LIVQAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-10 23:00:36
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-10
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-10 03:38:29
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:38:24.965716 2026] [security2:error] [pid 13678:tid 13678] [client 104.207.35.135:60913] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ibcnu.com"] [uri "/app/.git/config"] [unique_id "aYqoMH4Uq2go0GZA3q7tkAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 02:17:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 21:17:03.327366 2026] [security2:error] [pid 1036081:tid 1036166] [client 104.207.35.135:12127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "killasgarage.bike"] [uri "/backup/.git/config"] [unique_id "aYqVH8__7REXY7sHL-BilgAAAcQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 22:56:41
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:56:31.164332 2026] [security2:error] [pid 7982:tid 7982] [client 104.207.35.135:21009] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "howietaylor.com"] [uri "/site/.git/config"] [unique_id "aYpmH_SqX4AcMzKUZyaVXgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-09 22:38:26
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:38:17.984721 2026] [security2:error] [pid 1894:tid 1894] [client 104.207.35.135:15767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "macroprintbooks.com"] [uri "/frontend/.env"] [unique_id "aYph2RhlrVvNdhhQf-9C0AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-09 22:06:44
(3 months ago)
Blocking for trying to access an exploit file: /dev/.git/config
Hacking
๐บ๐ธ
VanKoh
2026-01-02 16:32:31
(5 months ago)
104.207.35.135 - - [02/Jan/2026:10:32:27 -0600] "GET / HTTP/1.1" 200 25130 "https://am4digital.xyz/" ...
show more
104.207.35.135 - - [02/Jan/2026:10:32:27 -0600] "GET / HTTP/1.1" 200 25130 "https://am4digital.xyz/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36"
104.207.35.135 - - [02/Jan/2026:10:32:28 -0600] "GET /index.php/wp-json/ HTTP/1.1" 200 24640 "https://am4digital.xyz/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36"
104.207.35.135 - - [02/Jan/2026:10:32:30 -0600] "GET /xmlrpc.php?rsd HTTP/1.1" 200 313 "https://am4digital.xyz/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-10 00:09:27
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 09 19:09:20.209902 2025] [security2:error] [pid 26741:tid 26741] [client 104.207.35.135:50593] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whitetaildetailing.com"] [uri "/.env"] [unique_id "aTi6MGAfB1tyJMiMXu1wiAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2025-12-07 22:41:50
(5 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐บ๐ธ
TPI-Abuse
2025-12-07 22:06:24
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 17:06:17.477264 2025] [security2:error] [pid 31225:tid 31239] [client 104.207.35.135:10199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ptinct.com"] [uri "/.git/HEAD"] [unique_id "aTX6WfQabYNuyZ4q2bHMEgAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-07 20:09:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.35.135 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 07 15:08:49.081016 2025] [security2:error] [pid 6107:tid 6107] [client 104.207.35.135:19035] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roselockecasting.com"] [uri "/.git/HEAD"] [unique_id "aTXe0VmWmqF9yfNXp6KxYgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack