๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:32
(6 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-06-08 21:59:36
(1 week ago)
Auto-ban: >3000 req/min op 2026-06-08
Web App Attack
SSH
Hacking
๐ซ๐ท
masterguru
2026-06-08 11:53:46
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.221.36.38 (US/United States/38.36. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.221.36.38 (US/United States/38.36.221.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
4server
2026-06-08 11:06:48
(1 week ago)
[MonJun0813:06:41.8082932026][security2:error][pid1135262:tid1135304][client35.221.36.38:0]ModSecuri ...
show more
[MonJun0813:06:41.8082932026][security2:error][pid1135262:tid1135304][client35.221.36.38:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"sito-online.ch\"][uri\"/.git/config\"][unique_id\"aiaiQR_CSuZMwFPHM_O4xAAAABA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 10:16:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 06:16:23.713045 2026] [security2:error] [pid 451:tid 451] [client 35.221.36.38:59192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barnquiltsofnorthernvermont.org"] [uri "/.git/config"] [unique_id "aiaWd95hMuuxBAHA339jJwAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 08:12:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 04:12:36.037920 2026] [security2:error] [pid 8541:tid 8541] [client 35.221.36.38:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.empoweruamerica.org"] [uri "/.git/config"] [unique_id "aiZ5dFvS6HmGZ96K6StkogAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 07:48:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 03:48:02.246404 2026] [security2:error] [pid 21413:tid 21413] [client 35.221.36.38:41724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thepercussionworks.mikedeutsch.com"] [uri "/.git/config"] [unique_id "aiZzsu4AcaXDTADr50HTVQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-08 07:23:14
(1 week ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.221.36.38 (US/United States/38.3 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.221.36.38 (US/United States/38.36.221.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 05:36:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 01:36:07.202945 2026] [security2:error] [pid 1359:tid 1359] [client 35.221.36.38:52928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "james.ahlstrom.name"] [uri "/.git/config"] [unique_id "aiZUxw0Af4KVdJTCmgZ3kgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 04:50:02
(1 week ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 04:37:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 00:37:15.777683 2026] [security2:error] [pid 28493:tid 28493] [client 35.221.36.38:46764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ctjcisenate.org"] [uri "/.git/config"] [unique_id "aiZG-7PgRqz_a2_cT10pKwAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 03:53:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 23:53:39.506366 2026] [security2:error] [pid 31937:tid 31937] [client 35.221.36.38:38248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hsoftwaresystems.net"] [uri "/.git/config"] [unique_id "aiY8w3iNsySU84h5OAaqvQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 01:40:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.36.38 (38.36.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 21:40:37.047371 2026] [security2:error] [pid 14782:tid 14782] [client 35.221.36.38:49046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thereisaplaceonearth.com"] [uri "/.git/config"] [unique_id "aiYdlaRHDddMAZ-McsTQAgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-08 01:07:18
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack