๐ณ๐ฑ
Site.eu
2026-09-17 05:38:24
(2 hours ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:01:56
(9 hours ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
๐ฉ๐ช
big-cloud.nl
2026-09-16 19:10:43
(12 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 18:06:19
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 14:06:12.012291 2026] [security2:error] [pid 5097:tid 5097] [client 35.189.55.239:52594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blfmarine.com.lakesidedetectiveagency.com"] [uri "/.git/config"] [unique_id "aqralK3ylld2D48sBr5lCAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 17:48:20
(13 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+2 more) | 2026-09-16 17:48 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 16:00:36
(15 hours ago)
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-30al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.189.55.239 - - [16/Sep/2026:18:00:19 +0200] "GET /.git/config HTTP/1.1" 404 25341 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2026-09-16 14:22:57
(17 hours ago)
URL scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:04:42
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:04:35.977102 2026] [security2:error] [pid 3469:tid 3469] [client 35.189.55.239:37696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ble.zunosaki.com"] [uri "/.git/config"] [unique_id "aqqh8_sB9oLFNbHZWZ4MlgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FD-IX
2026-09-16 11:49:37
(19 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 11:18:14
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:18:07.923724 2026] [security2:error] [pid 24088:tid 24154] [client 35.189.55.239:47880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blastfuturepress.blastfuture.com"] [uri "/.git/config"] [unique_id "aqp676Sfgqxa9aEufbg7ggAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
zynex
2026-09-16 10:03:22
(21 hours ago)
URL Probing: /.env
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 09:59:36
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.55.239 (239.55.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 05:59:33.342883 2026] [security2:error] [pid 9077:tid 9077] [client 35.189.55.239:45942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blank.lindenwoodpark.org"] [uri "/.git/config"] [unique_id "aqpohW2UAhf-ZkbhdqExKwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 08:52:55
(22 hours ago)
35.189.55.239 - - [16/Sep/2026:10:52:55 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 ...
show more
35.189.55.239 - - [16/Sep/2026:10:52:55 +0200] "GET /.git/config HTTP/1.1" 301 169 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
๐ท๐ด
clauss
2026-09-16 08:19:14
(23 hours ago)
35.189.55.239 - - [16/Sep/2026:11:19:13 +0300] "GET /phpinfo.php HTTP/2.0" 401 543 "-" "Mozilla/5.0 ...
show more
35.189.55.239 - - [16/Sep/2026:11:19:13 +0300] "GET /phpinfo.php HTTP/2.0" 401 543 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.189.55.239 - - [16/Sep/2026:11:19:14 +0300] "GET /info.php HTTP/2.0" 401 543 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 07:55:02
(23 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack