๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:02:23
(3 hours ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
Anonymous
2026-09-16 11:00:12
(14 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
Anonymous
2026-09-16 05:21:26
(20 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 05:00:08
(20 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 04:32:24
(21 hours ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.199.106.47 - - [16/Sep/2026:06:32:21 +0200] "GET /.git/config HTTP/1.1" 301 508 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:09:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.199.106.47 (47.106.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.106.47 (47.106.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:09:03.949581 2026] [security2:error] [pid 25696:tid 25696] [client 35.199.106.47:47648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jesusthechristministry.org.halotoys.com"] [uri "/.git/config"] [unique_id "aqltn4bn27WV6-wZlR9ycAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-15 12:08:25
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-15 09:58:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.199.106.47 (47.106.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.106.47 (47.106.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 05:58:08.115373 2026] [security2:error] [pid 19093:tid 19093] [client 35.199.106.47:45732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thesiteworks.com"] [uri "/.git/config"] [unique_id "aqkWsM0xFSvlHkS7r5dF_wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 09:25:04
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-15 08:55:01
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 06:13:44
(1 day ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.199.106.47 - - [15/Sep/2026:08:13:44 +0200] "GET /.git/config HTTP/1.1" 404 418 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-15 03:50:09
(1 day ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-09-15 03:33:52
(1 day ago)
35.199.106.47 - - [15/Sep/2026:05:33:47 +0200] "GET /.env.local HTTP/1.1" 404 513 "-" "Mozilla/5.0 ( ...
show more
35.199.106.47 - - [15/Sep/2026:05:33:47 +0200] "GET /.env.local HTTP/1.1" 404 513 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.106.47 - - [15/Sep/2026:05:33:47 +0200] "GET /.env.production HTTP/1.1" 404 513 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.106.47 - - [15/Sep/2026:05:33:47 +0200] "GET /.env.staging HTTP/1.1" 404 513 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.106.47 - - [15/Sep/2026:05:33:47 +0200] "GET /.env.development HTTP/1.1" 404 513 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.106.47 - - [15/Sep/2026:05:33:47 +0200] "GET /.env.test HTTP/1.1" 404 513 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.106.47 - - [15/Sep/2026:05:33:4
show less
Web App Attack
Hacking