๐ณ๐ฑ
homeshowdomain.nl
2026-06-16 22:02:43
(20 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-15.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Site.eu
2026-06-16 00:53:48
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ณ๐ฑ
Savvii
2026-06-15 18:25:50
(1 day ago)
85 attempts against mh-misbehave-ban on plum
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 18:13:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.196.95.231 (231.95.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.95.231 (231.95.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 14:13:18.241492 2026] [security2:error] [pid 5354:tid 5354] [client 35.196.95.231:60794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/config/config.yml" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "modele18.com"] [uri "/config/config.yml"] [unique_id "ajBAvhYfgT470ysvqsvyJgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 17:15:12
(2 days ago)
Bot / seems abusive / Apache connections: 125
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
chrisoej
2026-06-15 16:00:09
(2 days ago)
Automated scan detection: 427 requests, 427 failures
Probed 158 sensitive paths:
- /actuator/heapd ...
show more
Automated scan detection: 427 requests, 427 failures
Probed 158 sensitive paths:
- /actuator/heapdump
- /actuator/env
- /actuator/configprops
- /actuator/logfile
- /actuator/threaddump
Reported by chairlabs infrastructure monitoring
show less
Web App Attack
Hacking
Bad Web Bot
๐บ๐ธ
chrisoej
2026-06-15 15:01:32
(2 days ago)
35.196.95.231 - - [15/Jun/2026:15:01:31 +0000] "GET /actuator/heapdump HTTP/1.1" 404 19 "-" "-" 3130 ...
show more
35.196.95.231 - - [15/Jun/2026:15:01:31 +0000] "GET /actuator/heapdump HTTP/1.1" 404 19 "-" "-" 3130258 "-" "-" 0ms
35.196.95.231 - - [15/Jun/2026:15:01:31 +0000] "GET /actuator/env HTTP/1.1" 404 19 "-" "-" 3130259 "-" "-" 0ms
35.196.95.231 - - [15/Jun/2026:15:01:31 +0000] "GET /actuator/configprops HTTP/1.1" 404 19 "-" "-" 3130260 "-" "-" 0ms
35.196.95.231 - - [15/Jun/2026:15:01:31 +0000] "GET /actuator/logfile HTTP/1.1" 404 19 "-" "-" 3130261 "-" "-" 0ms
35.196.95.231 - - [15/Jun/2026:15:01:31 +0000] "GET /actuator/threaddump HTTP/1.1" 404 19 "-" "-" 3130262 "-" "-" 0ms
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-15 08:16:07
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
grassau.com
2026-06-15 07:45:52
(2 days ago)
*Port Scan* detected from 35.196.95.231 (US/United States/South Carolina/North Charleston/231.95.196 ...
show more
*Port Scan* detected from 35.196.95.231 (US/United States/South Carolina/North Charleston/231.95.196.35.bc.googleusercontent.com).
show less
Port Scan
๐บ๐ธ
mnsf
2026-06-15 03:05:54
(2 days ago)
Abuse Detected (10)
Brute-Force
Web App Attack
๐ซ๐ท
โจ
2026-06-15 02:27:19
(2 days ago)
Domain : bestofedinburgh.com
Rule : hack
2026-06-15 02:25:49 ***hidden-privacy*** GET /.env.local.ba ...
show more
Domain : bestofedinburgh.com
Rule : hack
2026-06-15 02:25:49 ***hidden-privacy*** GET /.env.local.bak - 443 - 35.196.95.231 HTTP/1.1 Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Safari/537.36 - bestofedinburgh.com 404 0 2 5256 259 248 - -
show less
Hacking
SQL Injection
Brute-Force
๐ณ๐ฑ
Cloud86 B.V.
2026-06-15 00:00:10
(2 days ago)
categories: DDoS Attack
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:22:15
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.196.95.231 (231.95.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.95.231 (231.95.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:22:07.854643 2026] [security2:error] [pid 13393:tid 13393] [client 35.196.95.231:39034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lakependoreillemobility.com"] [uri "/.env.demo"] [unique_id "ai83nybH22HBcNWMJhQsKwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 05:43:06
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 35.196.95.231 (231.95.196.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.95.231 (231.95.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 01:43:01.966965 2026] [security2:error] [pid 25893:tid 25893] [client 35.196.95.231:35138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "josecastillo.com"] [uri "/.env.dev.local"] [unique_id "ai4_Ze_EHnjMA09_2Il5TwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-06-14 03:20:04
(3 days ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack