๐ฌ๐ง
poundawebsiteltd
2026-10-08 14:03:41
(8 minutes ago)
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.207.197 ...
show more
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.207.197.235 (IN/India/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 35.207.197.235 (IN/India/235.197.207.35.bc.googleusercontent.com): 20 in the last 3600 secs
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-08 13:55:15
(16 minutes ago)
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-02ra] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.207.197.235 - - [08/Oct/2026:15:55:13 +0200] "GET /.git/config HTTP/1.1" 301 518 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
Interceptor_HQ
2026-10-08 13:31:45
(40 minutes ago)
request_uri: / -- automatic report --
Brute-Force
Hacking
๐ฉ๐ช
Michel Wijnberg
2026-10-08 13:27:31
(44 minutes ago)
35.207.197.235 - - [08/Oct/2026:13:27:31 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 ( ...
show more
35.207.197.235 - - [08/Oct/2026:13:27:31 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Ferron
2026-10-08 13:14:29
(57 minutes ago)
Ferron abuse ban: Custom abuse event: automated_scan
Port Scan
๐ฉ๐ช
Interceptor_HQ
2026-10-08 13:10:53
(1 hour ago)
request_uri: /.git/config -- automatic report --
Brute-Force
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 11:32:05
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 07:32:00.040105 2026] [security2:error] [pid 25865:tid 25879] [client 35.207.197.235:46096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deathbyaudioorg.killerrockandroll.com"] [uri "/.git/config"] [unique_id "asd_MMyzrLqHJH-WCAr7WwAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
pearbright
2026-10-08 10:57:58
(3 hours ago)
[Thu Oct 08 10:57:57.845049 2026] [php:error] [pid 2085176:tid 2085176] [client 35.207.197.235:59254 ...
show more
[Thu Oct 08 10:57:57.845049 2026] [php:error] [pid 2085176:tid 2085176] [client 35.207.197.235:59254] script '/var/www/deary/html/phpinfo.php' not found or unable to stat
[Thu Oct 08 10:57:58.021822 2026] [php:error] [pid 2085176:tid 2085176] [client 35.207.197.235:59254] script '/var/www/deary/html/info.php' not found or unable to stat
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 09:18:14
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 05:18:09.410648 2026] [security2:error] [pid 29541:tid 29541] [client 35.207.197.235:47650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deargrampy.net"] [uri "/.git/config"] [unique_id "asdf0Zc4g2oWKyPvqOYBGQAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-10-08 07:41:27
(6 hours ago)
Secret file probe | method: GET | path: /.git/config | ua: Mozilla/5.0 (X11; Linux x86_64) AppleWebK ...
show more
Secret file probe | method: GET | path: /.git/config | ua: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 06:46:18
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 02:46:13.244494 2026] [security2:error] [pid 19596:tid 19596] [client 35.207.197.235:53382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deanodotson.click"] [uri "/.git/config"] [unique_id "asc8Ndx8nZJgA3QrS_DE0wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 05:34:55
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 01:34:50.790839 2026] [security2:error] [pid 19853:tid 19853] [client 35.207.197.235:53932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deanfountain.com"] [uri "/.git/config"] [unique_id "ascremQLQ61xuEBGv9BlbgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-10-08 05:32:43
(8 hours ago)
2.965 requests with url.path *.env
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-08 05:18:41
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.207.197.235 (235.197.207.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 01:18:34.347412 2026] [security2:error] [pid 2816:tid 2816] [client 35.207.197.235:39904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deandobkin.com"] [uri "/.git/config"] [unique_id "ascnqtFxHJiFDhg8QfngewAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐บ
SiteXL
2026-10-08 04:23:47
(9 hours ago)
Automated Fail2Ban detection: malicious activity observed; source IP was banned.
Bad Web Bot
Web App Attack