๐ณ๐ฑ
Site.eu
2026-09-17 14:16:08
(13 minutes ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-17 11:38:17
(2 hours ago)
35.199.87.99 - - [17/Sep/2026:13:37:53 +0200] "GET /.git/config HTTP/1.1" 403 616 "-" "Mozilla/5.0 ( ...
show more
35.199.87.99 - - [17/Sep/2026:13:37:53 +0200] "GET /.git/config HTTP/1.1" 403 616 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.87.99 - - [17/Sep/2026:13:37:54 +0200] "GET /.env HTTP/1.1" 403 616 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.87.99 - - [17/Sep/2026:13:37:54 +0200] "GET /.env.local HTTP/1.1" 403 616 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.87.99 - - [17/Sep/2026:13:37:54 +0200] "GET /.env.production HTTP/1.1" 403 616 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.87.99 - - [17/Sep/2026:13:37:54 +0200] "GET /.env.staging HTTP/1.1" 403 616 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.199.87.99 - - [17/Sep/2026:13:37:54 +0200] "GET /.
...
show less
DDoS Attack
๐ฉ๐ช
4server
2026-09-17 05:19:43
(9 hours ago)
[ThuSep1707:19:39.9703802026][security2:error][pid1693818:tid1693975][client35.199.87.99:0]ModSecuri ...
show more
[ThuSep1707:19:39.9703802026][security2:error][pid1693818:tid1693975][client35.199.87.99:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.fit-easy.com.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"aqt4aw646mlk7i54gFqeqAAAABU\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:01:50
(16 hours ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
๐ฌ๐ง
consul.to
2026-09-16 16:21:17
(22 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-16 15:35:19
(22 hours ago)
35.199.87.99 - - [16/Sep/2026:10:35:17 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macinto ...
show more
35.199.87.99 - - [16/Sep/2026:10:35:17 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.199.87.99
35.199.87.99 - - [16/Sep/2026:10:35:17 -0500] "GET /.env.local HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.199.87.99
35.199.87.99 - - [16/Sep/2026:10:35:17 -0500] "GET /.env.production HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.199.87.99
35.199.87.99 - - [16/Sep/2026:10:35:17 -0500] "GET /.env.staging HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.199.87.99
35.199.87.99 - - [16/Sep/2026:10:35:18 -0500] "GET /.env.development HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Macintosh; Intel Mac O
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:07:55
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:07:49.041322 2026] [security2:error] [pid 20100:tid 20100] [client 35.199.87.99:56666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.elessen.lucid-events.com"] [uri "/.git/config"] [unique_id "aqqwxc3u5Pu4aW0s7VqQnAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:47:51
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:47:43.831459 2026] [security2:error] [pid 20650:tid 20650] [client 35.199.87.99:55318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.elenacampo.magodarman.com"] [uri "/.git/config"] [unique_id "aqqsD-IOD8Q-CaEdik-bhQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Little Iguana
2026-09-16 14:44:14
(23 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
๐ฉ๐ช
Sรฉfora Srl
2026-09-16 13:38:55
(1 day ago)
crowdsecurity/http-sensitive-files detected by CrowdSec
Web App Attack
Anonymous
2026-09-16 13:28:12
(1 day ago)
Bot / seems abusive / Apache connections: 34
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 13:09:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:09:32.117162 2026] [security2:error] [pid 24833:tid 24833] [client 35.199.87.99:55522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.electrolux.pamplonaserviciotecnico.com"] [uri "/.git/config"] [unique_id "aqqVDEis9_PujxUe2wrrdgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:52:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:52:28.543143 2026] [security2:error] [pid 1085:tid 1085] [client 35.199.87.99:51036] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.electricmeatgrinder.com.cajunfriedturkey.com"] [uri "/.git/config"] [unique_id "aqqRDBhp7KaxnkDaWtXz_gAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 10:15:02
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 07:36:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.87.99 (99.87.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 03:36:03.246027 2026] [security2:error] [pid 24145:tid 24156] [client 35.199.87.99:58452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.esgcommission.aafm.us"] [uri "/.git/config"] [unique_id "aqpG417DHYmiHvPecxOnRwAAAIk"]
show less
Brute-Force
Bad Web Bot
Web App Attack