π³π±
Site.eu
2026-09-01 15:43:49
(21 hours ago)
Excessive multi-domain requests
Brute-Force
π©πͺ
Gwyneth Llewelyn
2026-09-01 11:25:04
(1 day ago)
35.231.162.63 - - [01/Sep/2026:12:24:38 +0100] "GET /.env HTTP/2.0" 302 138 "-" "Mozilla/5.0 (Macint ...
show more
35.231.162.63 - - [01/Sep/2026:12:24:38 +0100] "GET /.env HTTP/2.0" 302 138 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
2026/09/01 12:24:38 [error] 380594#380594: *2064524 access forbidden by rule, client: 35.231.162.63, server: simetria.org, request: "GET /www-old.simetria.org/.env HTTP/2.0", host: "www-old.simetria.org"
2026/09/01 12:25:01 [error] 380594#380594: *2064612 access forbidden by rule, client: 35.231.162.63, server: simetria.org, request: "GET /www-old.simetria.org/app/.env HTTP/2.0", host: "www-old.simetria.org"
show less
Brute-Force
Web App Attack
Anonymous
2026-09-01 09:51:57
(1 day ago)
35.231.162.63 - - [01/Sep/2026:09:51:56 +0000] "GET /.git/config HTTP/1.1" 404 465 "-" "Mozilla/5.0 ...
show more
35.231.162.63 - - [01/Sep/2026:09:51:56 +0000] "GET /.git/config HTTP/1.1" 404 465 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-08-30 09:29:17
(3 days ago)
Excessive multi-domain requests
Brute-Force
π΅π±
sefinek.net
2026-08-30 01:52:35
(3 days ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoi ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action: BLOCK | Protocol: HTTP/1.1 (GET) | Endpoint: /core/phpinfo.php | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 β’ Generated by: github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π¨π¦
Anytech
2026-08-29 22:28:13
(3 days ago)
Blocked by ConnMonitor
Web App Attack
π¨π
dalslab ltd
2026-08-29 17:54:57
(3 days ago)
[29/Aug/2026:19:54:57 +0200] - 404 404 - GET https wpa-sec.dalslab.com "/phpinfo.php" [Client 35.231 ...
show more
[29/Aug/2026:19:54:57 +0200] - 404 404 - GET https wpa-sec.dalslab.com "/phpinfo.php" [Client 35.231.162.63] [Length 47] [Gzip -] [Sent-to 10.1.1.235] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
[29/Aug/2026:19:54:57 +0200] - 404 404 - GET https wpa-sec.dalslab.com "/info.php" [Client 35.231.162.63] [Length 47] [Gzip -] [Sent-to 10.1.1.235] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
[29/Aug/2026:19:54:57 +0200] - 404 404 - GET https wpa-sec.dalslab.com "/php.php" [Client 35.231.162.63] [Length 47] [Gzip -] [Sent-to 10.1.1.235] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-"
[29/Aug/2026:19:54:57 +0200] - 404 404 - GET https wpa-sec.dalslab.com "/i.php" [Client 35.231.162.63] [Length 47] [Gzip -] [Sent-to 10.1.1.235] "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/
...
show less
Web Spam
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ger-stg-sifi1
2026-08-29 17:32:36
(3 days ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-08-29 15:10:39
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π©πͺ
FeG Deutschland
2026-08-29 14:35:37
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
π³π±
Savvii
2026-08-29 14:12:47
(3 days ago)
20 attempts against mh-misbehave-ban on ozone
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-08-29 09:14:08
(4 days ago)
Excessive multi-domain requests
Brute-Force
π³π±
Mangelot Hosting
2026-08-29 08:04:05
(4 days ago)
(modsecurity) srv101 ModSecurity 35.231.162.63 (US/United States/63.162.231.35.bc.googleusercontent. ...
show more
(modsecurity) srv101 ModSecurity 35.231.162.63 (US/United States/63.162.231.35.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 06:44:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 35.231.162.63 (63.162.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.162.63 (63.162.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:44:02.467500 2026] [security2:error] [pid 4926:tid 4926] [client 35.231.162.63:49462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "worldcup.stpetersplayers.co.uk"] [uri "/.git/config"] [unique_id "apJ_svZQPon3AzpaGRwrywAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 22:12:16
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 35.231.162.63 (63.162.231.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.162.63 (63.162.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:12:10.316568 2026] [security2:error] [pid 24580:tid 24585] [client 35.231.162.63:60928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "workconfident.com"] [uri "/.git/config"] [unique_id "apIHuom99ISEuRCsFl9_bQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack