π³π±
homeshowdomain.nl
2026-05-23 21:59:29
(2 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
πΊπΈ
Brian
2026-05-22 22:44:00
(2 months ago)
try to access git
Web App Attack
Hacking
π³π±
homeshowdomain.nl
2026-05-22 22:01:40
(2 months ago)
Auto-ban: >3000 req/min op 2026-05-22
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-05-22 16:40:21
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.35.130.55 (55.130.35.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.130.55 (55.130.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 12:40:17.901835 2026] [security2:error] [pid 9783:tid 9783] [client 34.35.130.55:38970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thomasandross.djcommodore.com"] [uri "/.git/config"] [unique_id "ahCG8WKIr1BBycx5XTBPmQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 15:40:25
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.35.130.55 (55.130.35.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.130.55 (55.130.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 11:40:18.031821 2026] [security2:error] [pid 19896:tid 19896] [client 34.35.130.55:42944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puregoldmorgans.com"] [uri "/.git/config"] [unique_id "ahB44uJCoU1qyZYafKellgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 12:49:03
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 34.35.130.55 (55.130.35.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.130.55 (55.130.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:48:58.547339 2026] [security2:error] [pid 14455:tid 14455] [client 34.35.130.55:54076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "performingartsguild.com"] [uri "/.git/config"] [unique_id "ahBQul_jj9IO-qu70dElTgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-22 08:55:02
(2 months ago)
suspicious request in access.log
Web App Attack
π¬π§
PeravixGroup
2026-05-20 10:29:44
(2 months ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8443. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot
π«π·
cityhunter_rhone
2026-05-20 08:55:50
(2 months ago)
Honeypot port triggered: HONEYPOT PORT 9200 touched. Automatic permanent ban. Mercurius-Guide automa ...
show more
Honeypot port triggered: HONEYPOT PORT 9200 touched. Automatic permanent ban. Mercurius-Guide automated detection.
show less
Port Scan
Hacking
Brute-Force
πΈπͺ
donarev419
2026-05-20 08:41:17
(2 months ago)
Connection to port 9090 with data transfer.
Data preview: οΏ½
Port Scan
Hacking
πΈπͺ
donarev419
2026-05-20 00:35:17
(2 months ago)
Connection to port 443 with data transfer.
Data preview: οΏ½
Port Scan
Hacking