๐ฌ๐ง
Yosi
2026-10-07 12:59:48
(39 minutes ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
๐ฌ๐ง
Celtic
2026-10-07 12:57:52
(41 minutes ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
Anonymous
2026-10-07 12:11:28
(1 hour ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 12:00:29
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 08:00:23.395755 2026] [security2:error] [pid 6182:tid 6182] [client 35.207.19.93:50510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkwavepc.com"] [uri "/.git/config"] [unique_id "asY0V7Bzpi060KkoGDMLJQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
filstal.org
2026-10-07 11:41:43
(1 hour ago)
Web exploit or injection attempt blocked by ModSecurity WAF.
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 11:36:58
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 07:36:54.620394 2026] [security2:error] [pid 23043:tid 23043] [client 35.207.19.93:59420] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkstarsystems.net"] [uri "/.git/config"] [unique_id "asYu1vR7DS7Gv-vuL4gL9AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-07 11:26:03
(2 hours ago)
Bot / scanning and/or hacking attempts: GET /.env.example HTTP/1.1, GET /.env.sample HTTP/1.1, GET / ...
show more
Bot / scanning and/or hacking attempts: GET /.env.example HTTP/1.1, GET /.env.sample HTTP/1.1, GET /.env.live HTTP/1.1, GET /.env.prod HTTP/1.1, GET /.env.dev HTTP/1.1, GET /.env.uat HTTP/1.1, GET /.env.docker HTTP/1.1, GET /.env.ci HTTP/1.1, GET /.env.stage HTTP/1.1, GET /.env.preprod HTTP/1.1
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 11:09:54
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 07:09:49.056407 2026] [security2:error] [pid 7246:tid 7246] [client 35.207.19.93:36178] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "darksecretvideo.com"] [uri "/.git/config"] [unique_id "asYofauMazW-mft8STYDXwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 10:22:41
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 06:22:33.905409 2026] [security2:error] [pid 16077:tid 16077] [client 35.207.19.93:50626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkmysteries.biz"] [uri "/.git/config"] [unique_id "asYdadb1g7BxQN2B0O3TMgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
900cm
2026-10-07 09:50:01
(3 hours ago)
[Wed Oct 07 11:50:00.309927 2026] [access_compat:error] [pid 2342226:tid 2342226] [client 35.207.19. ...
show more
[Wed Oct 07 11:50:00.309927 2026] [access_compat:error] [pid 2342226:tid 2342226] [client 35.207.19.93:60248] AH01797: client denied by server configuration: /var/www/darkintruder/.git
[Wed Oct 07 11:50:00.603612 2026] [access_compat:error] [pid 2342226:tid 2342226] [client 35.207.19.93:60248] AH01797: client denied by server configuration: /var/www/darkintruder/.env
[Wed Oct 07 11:50:00.698589 2026] [access_compat:error] [pid 2342226:tid 2342226] [client 35.207.19.93:60248] AH01797: client denied by server configuration: /var/www/darkintruder/.env.local
...
show less
Port Scan
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-10-07 09:45:25
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:45:18.053319 2026] [security2:error] [pid 1877:tid 1877] [client 35.207.19.93:50124] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkhorseyachting.com"] [uri "/.git/config"] [unique_id "asYUrhG7wV9Pgp5SKDq8ggAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 09:14:33
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:14:27.119713 2026] [security2:error] [pid 32021:tid 32094] [client 35.207.19.93:37876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkestmoonart.com"] [uri "/.git/config"] [unique_id "asYNcychYa8Z8ckmuKfnTAAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-07 09:01:14
(4 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 08:52:23
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.19.93 (93.19.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 04:52:17.567049 2026] [security2:error] [pid 26036:tid 26036] [client 35.207.19.93:45736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkcodedesign.com"] [uri "/.git/config"] [unique_id "asYIQcz1FOg9q-Bq9O7k_AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-10-05 08:10:03
(2 days ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack