๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:55
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฟ
Antinson
2026-06-09 12:35:54
(2 weeks ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-09 11:29:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:29:10.550049 2026] [security2:error] [pid 28345:tid 28345] [client 35.220.238.115:42732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "realdesigninterior.com"] [uri "/.git/config"] [unique_id "aif5BoD_9U0IzVjZ-4UR_QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:14:10
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:14:06.500230 2026] [security2:error] [pid 7340:tid 7340] [client 35.220.238.115:40746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.drgas.scottwithers.xyz"] [uri "/.git/config"] [unique_id "aifnbt61tvFlorR17EBEXgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 07:26:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:26:51.506790 2026] [security2:error] [pid 16259:tid 16259] [client 35.220.238.115:40520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.scaleiq.group"] [uri "/.git/config"] [unique_id "aifAO4zv_O5S_Pr15l7tiQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-06-09 06:16:02
(2 weeks ago)
Web attack from 35.220.238.115
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 05:50:47
(2 weeks ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.220.238.115 (HK/Hong Kong/115.238. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.220.238.115 (HK/Hong Kong/115.238.220.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 03:10:49
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:10:43.955525 2026] [security2:error] [pid 27874:tid 27874] [client 35.220.238.115:50500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abastaxteam.homehealth101.com"] [uri "/.git/config"] [unique_id "aieEMwnJ7HM2Oo58wXEukgAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:59:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:59:08.035122 2026] [security2:error] [pid 6166:tid 6166] [client 35.220.238.115:57454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amora.academy"] [uri "/.git/config"] [unique_id "aidzbMhOFMEiGUu1FNYlMQAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 00:45:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 20:45:35.699496 2026] [security2:error] [pid 5427:tid 5454] [client 35.220.238.115:34500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.henrisphoto.robertdanielsllc.com"] [uri "/.git/config"] [unique_id "aidiLzsrbSxcZtbQIwbz_wAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 22:03:11
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-08 19:18:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:18:16.556758 2026] [security2:error] [pid 18999:tid 18999] [client 35.220.238.115:43610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "healthycaregiving.com"] [uri "/.git/config"] [unique_id "aicVeAUdHJSAYiSdhEi4PAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 18:14:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 14:14:25.806879 2026] [security2:error] [pid 3262:tid 3262] [client 35.220.238.115:35846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.stormstrips.stormstrips.com"] [uri "/.git/config"] [unique_id "aicGgfWLjkcpFoxbVdTmPwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-08 17:51:23
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 12:23:26
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.238.115 (115.238.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 08:23:20.629425 2026] [security2:error] [pid 928:tid 928] [client 35.220.238.115:40210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "directcch.com"] [uri "/.git/config"] [unique_id "aia0OB3Shhci-nm4aKX19gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack