🇺🇸
TPI-Abuse
2026-09-06 04:27:27
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 00:27:21.110747 2026] [security2:error] [pid 8197:tid 8197] [client 35.233.35.18:45976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "overblijvers.nl"] [uri "/public/.git/config"] [unique_id "apzrqY9XpBruOi8NSOgzAgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-06 01:57:38
(5 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 01:54:31
(5 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 21:54:26.628007 2026] [security2:error] [pid 23703:tid 23703] [client 35.233.35.18:56932] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "theshitmyaisays.com"] [uri "/htdocs/.git/config"] [unique_id "apzH0kywEd3HKq4mz2ii-QAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 23:07:54
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 19:07:50.522835 2026] [security2:error] [pid 8379:tid 8379] [client 35.233.35.18:60648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.artglass-jerusalem.net"] [uri "/var/www/.git/config"] [unique_id "apygxiHTt2vJpi9Yf566fAAAAHc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-05 21:11:55
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 20:35:03
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.35.18 (18.35.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 16:34:54.294900 2026] [security2:error] [pid 13593:tid 13593] [client 35.233.35.18:54520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saldesica.com"] [uri "/.git/config"] [unique_id "apx87j-2lteqby-t2Jlu_wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Cloud86 B.V.
2026-09-04 03:36:02
(2 days ago)
categories: DDoS Attack
DDoS Attack
🇺🇸
cybsecaoccol
2026-04-24 15:16:11
(4 months ago)
unauthorized connection or malicious port scan attempted on tcp port - corp
Port Scan
Hacking
🇩🇪
guldkage
2026-04-24 14:35:59
(4 months ago)
Unauthorized connection attempt detected from IP address 35.233.35.18 to port 6379 (ger-02) [REDIS]
Exploited Host
🇹🇼
kk_it_man
2026-04-24 14:30:02
(4 months ago)
honey catch
Port Scan
🇺🇸
heyzg
2026-04-24 13:42:31
(4 months ago)
HTTP honeypot | Command Execution | 13 cmds, 32 HTTP, 4.4m | ext IPs: 173[.]255[.]226[.]61
Hacking
SSH
🇦🇺
trentwiles.com
2026-04-24 13:01:17
(4 months ago)
Unauthorized connection attempt detected from IP address 35.233.35.18 to port 1433 [SYD]
Port Scan
🇬🇧
PeravixGroup
2026-04-24 12:59:20
(4 months ago)
HoneyPot hit - Aaran.cloud | Mongodb Probe | database attack | ;admin.$cmdhello?8#hello?$dbadmin
Hacking
🇳🇱
EGP Abuse Dept
2026-04-24 12:57:25
(4 months ago)
Unauthorized connection to MSSQL port 1433
Port Scan
Hacking