๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 22:00:20
(23 hours ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
๐ซ๐ท
dynamix
2026-09-16 08:07:06
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 04:24:27
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 04:14:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:14:13.635737 2026] [security2:error] [pid 17118:tid 17118] [client 35.201.207.71:57316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.circleway.org.morefrogs.com"] [uri "/.git/config"] [unique_id "aqoXlf65Yn8IfP6Jt1dVWAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 04:05:34
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:54:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:53:58.459326 2026] [security2:error] [pid 21326:tid 21326] [client 35.201.207.71:40134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.circle-h-growers.hemihauling.com"] [uri "/.git/config"] [unique_id "aqoS1rCd3oXeaKgMHukhjQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:05:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:05:38.052102 2026] [security2:error] [pid 6296:tid 6318] [client 35.201.207.71:39980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cipm.us.aafm.us"] [uri "/.git/config"] [unique_id "aqoHgoh2goTvRY1sV5wspQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 02:56:08
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-09-16 02:18:18
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
middelkoopcc
2026-09-16 02:12:02
(1 day ago)
2026-09-16 04:09:46 GET /.git/config [301] && 2026-09-16 04:09:47 GET /.env [301] && 2026-09-16 04:0 ...
show more
2026-09-16 04:09:46 GET /.git/config [301] && 2026-09-16 04:09:47 GET /.env [301] && 2026-09-16 04:09:52 GET /.env.bak [301] && 107 more within 20 minutes
show less
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 01:25:02
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 01:12:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:12:44.406860 2026] [security2:error] [pid 24041:tid 24041] [client 35.201.207.71:37588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cinesonline.com.visionremota.info"] [uri "/.git/config"] [unique_id "aqntDL2-NjfwaiJzRI_t6gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:18:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.207.71 (71.207.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:18:47.386020 2026] [security2:error] [pid 13819:tid 13819] [client 35.201.207.71:50742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cienmalos.hodlmoser.com"] [uri "/.git/config"] [unique_id "aqmaF4ADLb05RDo2EA47XQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-15 13:11:33
(2 days ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-15 13:11 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
agenciahypelab.com.br
2026-09-15 10:24:31
(2 days ago)
WordPress login brute-force detectado e bloqueado pelo CSF/LFD. Trigger: LF_TRIGGER
Brute-Force
SSH