๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:02:20
(7 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
oisecnet
2026-06-09 21:01:54
(8 hours ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-06-09. 24 requests from this ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-06-09. 24 requests from this IP.
show less
Brute-Force
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-06-09 14:21:58
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 10:21:52.438394 2026] [security2:error] [pid 31054:tid 31054] [client 35.227.66.11:55832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zheundu.com.greighhouse.com"] [uri "/.git/config"] [unique_id "aighgG-LdQvln7QsVBKQDAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-06-09 13:22:45
(15 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฌ๐ง
Swiptly
2026-06-09 12:33:17
(16 hours ago)
Bot scanning for environment files .env .env/\*
...
Web App Attack
Anonymous
2026-06-09 12:25:01
(16 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-06-09 12:13:00
(17 hours ago)
IM360 WAF: Direct access to sensitive file or dotfile
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 11:03:13
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 07:03:09.744316 2026] [security2:error] [pid 9703:tid 9703] [client 35.227.66.11:32980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "persnicketyinc.com"] [uri "/.git/config"] [unique_id "aify7dSvBqCty5vbUo5-JgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Oakley
2026-06-09 10:45:36
(18 hours ago)
(confirmed_bot_sig) Confirmed bot
Hacking
Anonymous
2026-06-09 10:45:27
(18 hours ago)
Http Port:80 (http_status:422) - Agent:Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_4) AppleWebKit/6 ...
show more
Http Port:80 (http_status:422) - Agent:Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_4) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/11.1 Safari/605.1.15
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 10:43:36
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 06:43:29.292456 2026] [security2:error] [pid 14719:tid 14719] [client 35.227.66.11:56726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solutiongroove.com"] [uri "/.git/config"] [unique_id "aifuUaMrMBW0G3O-WESBqAAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-09 09:52:27
(19 hours ago)
Reported from Nginx log analysis 11. Log: 35.227.66.11 - - [09/Jun/2026:xx:xx:xx 0200] "GET /.git/c ...
show more
Reported from Nginx log analysis 11. Log: 35.227.66.11 - - [09/Jun/2026:xx:xx:xx 0200] "GET /.git/config HTTP/1.1" xxx xxx "-" "Mozilla/5.0 (X11; U; Linux i686; en-us) AppleWebKit/528.5 (KHTML, like Gecko, Safari/528.5 ) lt-GtkLauncher" "-" "US United States North Charleston" "AS396982" "Google LLC"
show less
Port Scan
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-06-09 09:22:55
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.66.11 (11.66.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:22:51.256044 2026] [security2:error] [pid 10687:tid 10687] [client 35.227.66.11:33610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "offbeatcompassion.com"] [uri "/.git/config"] [unique_id "aifbawvDdL4YTgaKtO8JuQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
webko.si
2026-06-09 08:46:38
(20 hours ago)
JZKK: Bruteforce web app access, URI detail: '/.git/config'.
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-09 07:05:29
(22 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot