๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:12
(9 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
big-cloud.nl
2026-06-15 09:15:50
(22 hours ago)
Try to access /.git/config
Web App Attack
๐ฉ๐ช
niedson
2026-06-15 09:00:02
(22 hours ago)
Automated honeypot trigger: scanner probing decoy admin/credential paths (e.g. /wp-admin, /phpmyadmi ...
show more
Automated honeypot trigger: scanner probing decoy admin/credential paths (e.g. /wp-admin, /phpmyadmin). Request dropped (HTTP 444) and source IP firewalled. Reported automatically.
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 08:11:36
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 04:11:29.539003 2026] [security2:error] [pid 27748:tid 27748] [client 35.198.33.86:58146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "premiumenterprisessolution.com"] [uri "/api/.git/config"] [unique_id "ai-zse7jJMqZchQiurzbdQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 07:39:13
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 03:39:07.896356 2026] [security2:error] [pid 3008:tid 3008] [client 35.198.33.86:56880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "walkingwithghosts.com"] [uri "/backend/.git/config"] [unique_id "ai-sG24D7o8Fu5EP9QyW6AAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-06-15 07:38:47
(23 hours ago)
Too many 404 requests [BY]
Web App Attack
๐ฉ๐ช
Viveronese
2026-06-15 07:19:54
(1 day ago)
HTTP vulnerability scanning
Web App Attack
๐ฉ๐ช
tentwentyfour
2026-06-15 07:04:42
(1 day ago)
Blocked for probing for sensitive web application components
Brute-Force
Web App Attack
๐ฉ๐ช
LRob.fr
2026-06-15 05:45:06
(1 day ago)
Repeated 404 errors, blocked by Fail2ban in custom-404 jail
Bad Web Bot
๐ง๐ช
cmbplf
2026-06-15 01:47:53
(1 day ago)
1.200 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 01:25:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:25:03.191815 2026] [security2:error] [pid 4383:tid 4403] [client 35.198.33.86:45874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "miltonthepuppy.com"] [uri "/wp-content/.git/config"] [unique_id "ai9Ub6u_4WOgG5kFmKeeZQAAAZE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-15 01:19:25
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 00:55:09
(1 day ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-06-15 00:44:25
(1 day ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:33:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.198.33.86 (86.33.198.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:33:47.825570 2026] [security2:error] [pid 32701:tid 32701] [client 35.198.33.86:58158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "d-sinema.com"] [uri "/api/.git/config"] [unique_id "ai9Ia86nWGZjxSjpGETy4AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack