π³π±
homeshowdomain.nl
2026-05-16 22:09:42
(1 month ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-15.
show less
Web App Attack
SSH
Hacking
π«π·
geot
2026-05-16 14:47:51
(1 month ago)
GET /.git/config HTTP/1.1
Hacking
Web App Attack
π³π±
homeshowdomain.nl
2026-05-15 22:00:10
(1 month ago)
Auto-ban: >3000 req/min op 2026-05-15
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-05-15 21:54:59
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 17:54:54.015060 2026] [security2:error] [pid 29684:tid 29684] [client 35.184.206.46:38820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wiki.juncurryahn.com"] [uri "/.git/config"] [unique_id "ageWLhnyf8h7d9wFRj7BRwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
big-cloud.nl
2026-05-15 21:44:26
(1 month ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-15 21:28:44
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 17:28:38.196945 2026] [security2:error] [pid 19868:tid 19868] [client 35.184.206.46:32924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.whoore.com"] [uri "/.git/config"] [unique_id "ageQBkmHe0U_0B20leWuugAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
piticu iuli
2026-05-15 21:15:33
(1 month ago)
(mod_security) mod_security triggered on hostname [redacted] 35.184.206.46 (US/United States/46.206. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.184.206.46 (US/United States/46.206.184.35.bc.googleusercontent.com)
show less
SQL Injection
πΊπΈ
TPI-Abuse
2026-05-15 21:13:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 17:13:08.776538 2026] [security2:error] [pid 12284:tid 12284] [client 35.184.206.46:50838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.whlr.net"] [uri "/.git/config"] [unique_id "ageMZP3Ftzw3ZyfpQSUzZAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-05-15 21:00:45
(1 month ago)
(mod_security) mod_security (id:949110) triggered by 35.184.206.46 (US/United States/46.206.184.35.b ...
show more
(mod_security) mod_security (id:949110) triggered by 35.184.206.46 (US/United States/46.206.184.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-15 20:54:43
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 16:54:37.462729 2026] [security2:error] [pid 4647:tid 4647] [client 35.184.206.46:46848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.whiddenstudios.com"] [uri "/.git/config"] [unique_id "ageIDdK_VHF2qMgbKH6ExwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³πΏ
Antinson
2026-05-15 20:52:53
(1 month ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
πΊπΈ
Mrnobot
2026-05-15 20:41:38
(1 month ago)
Confirmed scanner / probe behavior on US-origin IP. 1 edge-firewall events. Empty User-Agent (bot si ...
show more
Confirmed scanner / probe behavior on US-origin IP. 1 edge-firewall events. Empty User-Agent (bot signature). Sample paths probed: /.git/config Source: edge-firewall events on a content site.
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-15 20:39:19
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 16:39:13.933176 2026] [security2:error] [pid 14325:tid 14325] [client 35.184.206.46:50662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.what-is-a-smog-check.smogsandiego.com"] [uri "/.git/config"] [unique_id "ageEcXsbtrf3qUpS9Y6ZlgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-15 20:24:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 16:23:58.239543 2026] [security2:error] [pid 12487:tid 12487] [client 35.184.206.46:59484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wevfc.org"] [uri "/.git/config"] [unique_id "ageA3jzud8d2of5wUihXqgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-15 18:31:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.184.206.46 (46.206.184.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 14:31:32.500272 2026] [security2:error] [pid 27077:tid 27077] [client 35.184.206.46:48410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xygil.com"] [uri "/.git/config"] [unique_id "agdmhOYiB2hfaTsrcE07BgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack