๐บ๐ธ
TPI-Abuse
2026-09-26 15:23:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:23:19.345925 2026] [security2:error] [pid 21202:tid 21202] [client 35.195.250.8:43516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.stukabird.com"] [uri "/.git/config"] [unique_id "arfjZ5SckO8UVr7lrzvtLQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
antlac1
2026-09-26 08:59:51
(1 day ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
Anonymous
2026-09-25 23:06:26
(2 days ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:16:04
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:15:57.242417 2026] [security2:error] [pid 3500:tid 3500] [client 35.195.250.8:47046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.insearchofacure.org"] [uri "/.git/config"] [unique_id "arVo3d2NMlSIzXBf5xFmlAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 01:40:04
(3 days ago)
Trying to access config files
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-22 21:59:37
(5 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-21.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 23:23:02
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:22:57.680796 2026] [security2:error] [pid 10965:tid 10965] [client 35.195.250.8:51238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bgraph.com"] [uri "/.git/config"] [unique_id "arG8UScWDL0_2KNwOPgkJQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-21 22:03:16
(6 days ago)
Auto-ban: >3000 req/min op 2026-09-21
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Site.eu
2026-09-21 17:24:07
(6 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-21 16:24:46
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.250.8 (8.250.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:24:42.338989 2026] [security2:error] [pid 624:tid 624] [client 35.195.250.8:35418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigbandrockparty.com"] [uri "/.git/config"] [unique_id "arFaSuJzP6UxOo12irNReQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-21 15:35:03
(6 days ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-21 07:33:04
(6 days ago)
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.195.250.8 - - \[21/Sep/2026:09:33:00 +0200\] "GET /.git/config HTTP/1.1" 301 701 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-21 07:05:03
(6 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ฉ๐ช
jbcrn
2026-09-21 05:48:49
(6 days ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /. User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack