๐ฉ๐ช
McClay
2026-09-16 00:09:40
(3 minutes ago)
Illegal access attempt:35.228.228.98 - - [16/Sep/2026:02:09:40 +0200] "GET /.git/config HTTP/1.1" 40 ...
show more
Illegal access attempt:35.228.228.98 - - [16/Sep/2026:02:09:40 +0200] "GET /.git/config HTTP/1.1" 401 1129 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ณ๐ฑ
tmiland
2026-09-15 23:25:07
(47 minutes ago)
(nginx_404) Dot directory Honeypot Trap 35.228.228.98 (FI/Finland/98.228.228.35.bc.googleusercontent ...
show more
(nginx_404) Dot directory Honeypot Trap 35.228.228.98 (FI/Finland/98.228.228.35.bc.googleusercontent.com): 2 in the last 3600 secs; IP: 35.228.228.98; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.228.228.98 - - [16/Sep/2026:01:25:05 +0200] "GET /.git/config HTTP/1.1" 404 2992 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 35.228.228.98 - - [16/Sep/2026:01:25:05 +0200] "GET /.env HTTP/1.1" 404 2992 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Brute-Force
๐ณ๐ฑ
homeshowdomain.nl
2026-09-15 22:00:55
(2 hours ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 21:07:16
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:07:10.230563 2026] [security2:error] [pid 29522:tid 29522] [client 35.228.228.98:35958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mail.mecme.co"] [uri "/.git/config"] [unique_id "aqmzfjf8Hb3A8gC2_xAKiAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:46:23
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:46:18.345473 2026] [security2:error] [pid 7478:tid 7478] [client 35.228.228.98:42788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mail.emelecsrl.com"] [uri "/.git/config"] [unique_id "aqmSeuGSUjRVjUeHkuHdKgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 18:08:15
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:08:08.902278 2026] [security2:error] [pid 6698:tid 6698] [client 35.228.228.98:42318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mail.cmabiblequizzing.org"] [uri "/.git/config"] [unique_id "aqmJiMwDe4gppvlHhxLk6QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-15 18:04:30
(6 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-15 17:47:59
(6 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.228.228.98 (FI/Finland/98.228.22 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.228.228.98 (FI/Finland/98.228.228.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 17:25:19
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 13:25:12.042364 2026] [security2:error] [pid 32383:tid 32383] [client 35.228.228.98:52104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mail.awcadvocate.com"] [uri "/.git/config"] [unique_id "aql_eBvQ0cSinZxJsl_2ZAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:43:01
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.228.98 (98.228.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:42:53.514524 2026] [security2:error] [pid 28959:tid 28959] [client 35.228.228.98:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mail-pmg.com"] [uri "/.git/config"] [unique_id "aql1jTtH8qLJn0aBUSnVDgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-15 15:10:03
(9 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack