๐ณ๐ฑ
homeshowdomain.nl
2026-07-24 22:01:20
(37 minutes ago)
Auto-ban: >3000 req/min op 2026-07-24
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-24 14:53:50
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 10:53:45.800527 2026] [security2:error] [pid 1206511:tid 1206560] [client 3.249.216.106:45202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vote4joegardner.jd-web-designs.com"] [uri "/.git/config"] [unique_id "amN8eTBAIJ29JQzxMJTkPwAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 13:20:08
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 09:19:59.376889 2026] [security2:error] [pid 4033656:tid 4033656] [client 3.249.216.106:33066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.voltbox.jamesallenwalker.com"] [uri "/.git/config"] [unique_id "amNmf6rLy0fC3nRXkW3k3AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-07-24 08:25:06
(14 hours ago)
Web App Attack
๐ซ๐ท
Octopuce
2026-07-24 08:02:30
(14 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
๐ช๐ธ
alferez
2026-07-24 07:07:24
(15 hours ago)
Searching .(env|sql|zip|tar|rar) files
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 06:38:57
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:38:53.214025 2026] [security2:error] [pid 19536:tid 19536] [client 3.249.216.106:45286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vitaminpolis.vittariadesign.com"] [uri "/.git/config"] [unique_id "amMIfZfq6qksaOsBjGtE9gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 06:21:42
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:21:37.190034 2026] [security2:error] [pid 3938214:tid 3938214] [client 3.249.216.106:37552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vitalitywebb.com.backstore.com"] [uri "/.git/config"] [unique_id "amMEcdWJNVqN9-dV8b0nIAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-07-24 05:10:17
(17 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฎ๐น
VHosting
2026-07-24 04:55:03
(17 hours ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 04:38:52
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.comp ...
show more
(mod_security) mod_security (id:210492) triggered by 3.249.216.106 (ec2-3-249-216-106.eu-west-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 00:38:49.569358 2026] [security2:error] [pid 3989737:tid 3989737] [client 3.249.216.106:32900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.visitcampbellford.modeltdr.com"] [uri "/.git/config"] [unique_id "amLsWe3Zt-tzKY3v2dCG5AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack