๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:04:14
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
wlt-blocker
2026-06-09 15:39:48
(1 week ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 15:36:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 11:36:07.067999 2026] [security2:error] [pid 9083:tid 9083] [client 35.227.18.253:33088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stringview.com"] [uri "/.git/config"] [unique_id "aigy59TLdQFmqPFH7eJmVgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 14:38:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:38:48.526637 2026] [security2:error] [pid 21807:tid 21807] [client 35.227.18.253:55478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tenderloinbeautiful.sfgardening.com"] [uri "/.git/config"] [unique_id "aigleA9BEI9zWdsOn2BUdAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:55:39
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:55:32.736684 2026] [security2:error] [pid 21168:tid 21168] [client 35.227.18.253:54298] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "saniyadenton.click"] [uri "/.git/config"] [unique_id "aif_NF_CyBjbYnZHNoahOwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 11:40:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:40:09.775835 2026] [security2:error] [pid 14189:tid 14189] [client 35.227.18.253:52014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sprek.net"] [uri "/.git/config"] [unique_id "aif7mVnY94tEMP_1G5r_9gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:18:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:18:01.921895 2026] [security2:error] [pid 3162:tid 3162] [client 35.227.18.253:39746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aslproud.deafinitely.com"] [uri "/.git/config"] [unique_id "aifoWbMpFsv-X7l-JzvXuQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
EDSL
2026-06-09 10:14:21
(1 week ago)
[mail.edsl.fr] Banned by Fail2ban (Jail: syswarden-secretshunter)
Bad Web Bot
Hacking
Port Scan
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-09 10:13:38
(1 week ago)
35.227.18.253 - - [09/Jun/2026:12:13:34 +0200] "GET /.git/config HTTP/1.1" 403 3998 "-" "Mozilla/5.0 ...
show more
35.227.18.253 - - [09/Jun/2026:12:13:34 +0200] "GET /.git/config HTTP/1.1" 403 3998 "-" "Mozilla/5.0 (Linux; U; Android 9; en-US; RMX1851 Build/PKQ1.190101.001) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/57.0.2987.108 UCBrowser/12.12.8.1206 Mobile Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:18:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:18:51.846377 2026] [security2:error] [pid 9269:tid 9269] [client 35.227.18.253:60662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.test.boardingatthewedge.com"] [uri "/.git/config"] [unique_id "aifae4M0yWPG7-C1YjBPvgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-09 07:04:46
(1 week ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 06:47:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:47:32.339114 2026] [security2:error] [pid 12909:tid 12909] [client 35.227.18.253:45974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.racingdreamsfilm.marshallcurry.com"] [uri "/.git/config"] [unique_id "aie3BEEQpWELi9Uweho3IwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:51:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:51:51.458677 2026] [security2:error] [pid 28444:tid 28444] [client 35.227.18.253:34406] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redtraffic.media"] [uri "/.git/config"] [unique_id "aid_x3WuvussXvdg0yRlNwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 02:44:04
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 01:40:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.18.253 (253.18.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 21:40:15.435726 2026] [security2:error] [pid 820:tid 820] [client 35.227.18.253:56168] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.correeo.gisur.com"] [uri "/.git/config"] [unique_id "aidu_1lgPyK-F-hPlgdtrwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack