๐จ๐ญ
m_vlasov
2026-06-16 19:29:18
(1 hour ago)
SSH/Telnet honeypot: 0 login attempts, 0 sessions, 0 shell commands.
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 21:59:34
(23 hours ago)
Auto-ban: >3000 req/min op 2026-06-15
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 06:59:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 02:59:35.882499 2026] [security2:error] [pid 28548:tid 28548] [client 35.200.133.133:52112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mobile.larkinplumbingservice.com"] [uri "/site/.git/config"] [unique_id "ai-i1xcDTkbS2fV75AJPdgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-06-15 06:22:19
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-15 05:04:34
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 05:01:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 01:00:58.927639 2026] [security2:error] [pid 22463:tid 22463] [client 35.200.133.133:36772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.amazingthailand.net.convoyforkids.com"] [uri "/html/.git/config"] [unique_id "ai-HCgd1Cm7AwiJxP23qOgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-15 04:22:07
(1 day ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-15 03:52:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:51:59.490132 2026] [security2:error] [pid 27980:tid 27980] [client 35.200.133.133:59244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "climasyequipos.com"] [uri "/app/.git/config"] [unique_id "ai9231evVYYdXg-BdsObYgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Lino Project
2026-06-15 03:42:09
(1 day ago)
35.200.133.133 - - [15/Jun/2026:05:42:06 +0200] "GET /admin/.git/config HTTP/1.1" 404 4127 "-" "Mozi ...
show more
35.200.133.133 - - [15/Jun/2026:05:42:06 +0200] "GET /admin/.git/config HTTP/1.1" 404 4127 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/64.0.3269.3 Safari/537.36"
35.200.133.133 - - [15/Jun/2026:05:42:07 +0200] "GET /.git/config HTTP/1.1" 404 4127 "-" "Mozilla/5.0 (Macintosh; U; Mac OS X Mach-O; en-US; rv:2.0a) Gecko/20040614 Firefox/3.0.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-06-15 03:32:59
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 35.200.133.133: 1 in the last 86400 secs; Por ...
show more
(mod_security) mod_security (id:11000011) triggered by 35.200.133.133: 1 in the last 86400 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Jun 15 06:32:55.813364 2026] [security2:error] [pid 948989:tid 949033] [client 35.200.133.133:45412] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "128"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 133.133.200.35.bc.googleusercontent.com"] [hostname "www.host.setworldup365.com"] [uri "/src/.git/config"] [unique_id "ai9yZ9XD3_cY7WcDuxq-AwAAAJE"]
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-15 03:32:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.200.133.133 (133.133.200.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:32:17.865495 2026] [security2:error] [pid 1426:tid 1426] [client 35.200.133.133:40752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "revidiego.com"] [uri "/.git/config"] [unique_id "ai9yQUIEWjEwqhDGweEDEAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 02:35:39
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ซ๐ท
โจ
2026-06-15 00:50:11
(1 day ago)
Domain : farmaservizi.net
Rule : config
2026-06-15 00:48:59 ***hidden-privacy*** GET /portal/.git/co ...
show more
Domain : farmaservizi.net
Rule : config
2026-06-15 00:48:59 ***hidden-privacy*** GET /portal/.git/config - 443 - 35.200.133.133 HTTP/1.1 Mozilla/5.0 (X11; NetBSD amd64; rv:16.0) Gecko/20121102 Firefox/16.0 - farmaservizi.net 404 8 0 1321 207 156 - -
show less
Hacking
SQL Injection
๐ฌ๐ง
OptimusGO
2026-06-15 00:10:52
(1 day ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-06-15 01:10:52 UTC
Log evidence:
06/15/2026-01:10:51.880227 [wDrop] [**] [1:7000500:1] FINSERV CRITICAL: Aggressive Port Scan [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 35.200.133.133:49230 -> 185.127.18.66:443
06/15/2026-01:10:51.880227 [**] [1:9000060:2] AUTONOMOUS Long-term Reconnaissance [**] [Classification: (null)] [Priority: 2] {TCP} 35.200.133.133:49230 -> 185.127.18.66:443
show less
Port Scan
Brute-Force
๐ฎ๐น
abuseiphack
2026-06-14 23:12:28
(1 day ago)
Automatic report for brute force attack
Bad Web Bot