๐ณ๐ฑ
homeshowdomain.nl
2026-06-27 22:02:16
(17 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-26.
show less
Web App Attack
SSH
Hacking
๐ฎ๐น
VHosting
2026-06-26 00:50:04
(2 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐ฉ๐ช
raph
2026-06-26 00:09:07
(2 days ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-06-25 23:43:37
(2 days ago)
URL Probing: /stage/.env
Web App Attack
Anonymous
2026-05-18 13:09:16
(1 month ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: JP, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: JP, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
Anonymous
2026-05-17 12:04:04
(1 month ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: JP, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: JP, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-05-17 11:50:03
(1 month ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 10:32:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.97.41.178 (178.41.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.41.178 (178.41.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 06:32:51.874471 2026] [security2:error] [pid 9034:tid 9045] [client 34.97.41.178:36142] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thompsonhypnotherapy.com"] [uri "/.git/config"] [unique_id "agmZU3bL0dqOIL_xmf0y2gAAAQk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 08:55:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.97.41.178 (178.41.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.41.178 (178.41.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 04:55:12.805787 2026] [security2:error] [pid 17133:tid 17133] [client 34.97.41.178:39604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thompsonboatworks.com"] [uri "/.git/config"] [unique_id "agmCcGPqfL8_rzlcpSn1dwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-17 07:22:25
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 34.97.41.178 (178.41.97.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.97.41.178 (178.41.97.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 03:22:18.055600 2026] [security2:error] [pid 31391:tid 31391] [client 34.97.41.178:56662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thommesen.net"] [uri "/.git/config"] [unique_id "aglsqrVSbqrqSmDCzQcaugAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Joe-Mark
2025-09-03 02:13:13
(9 months ago)
spamassassin with scrollout configs . VpassWorld Present . ([email protected] ) . RCVD IN AMI DYN[9.0 ...
show more
spamassassin with scrollout configs . VpassWorld Present . ([email protected] ) . RCVD IN AMI DYN[9.0] . URIBL ABUSE SURBL[1.9] . RCVD IN HOSTKARMA BL[2.5] . DKIM SIGNED[0.1] . DKIM VALID[-0.1] . DKIM VALID AU[-0.1] . DKIM VALID EF[-0.1] . RCVD IN GBUDB[5.0] . SO PUB URIBL NS 40[2.0] . RAZOR2 CHECK[1.7] . RAZOR2 CF RANGE 51 100[2.4] . MISSING MID[0.1] . MISSING DATE[1.4]
show less
Email Spam