🇳🇱
homeshowdomain.nl
2026-09-04 21:59:47
(24 minutes ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:48:52
(35 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:48:48.091993 2026] [security2:error] [pid 26088:tid 26088] [client 35.234.111.243:44582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.luisguacache.com"] [uri "/htdocs/.git/config"] [unique_id "aps8wLfEI6-2H9FljJnRKAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-04 21:32:15
(51 minutes ago)
Multiple WAF Violations
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 21:27:12
(56 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 18:53:22
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:53:17.400839 2026] [security2:error] [pid 3400900:tid 3401010] [client 35.234.111.243:50626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gitlab.transitionalcareservices.com"] [uri "/www/.git/config"] [unique_id "apsTnSYd3q84y9YaMPLVqwAAAgQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 16:17:23
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 12:17:16.379380 2026] [security2:error] [pid 3852:tid 3852] [client 35.234.111.243:48266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dalebeyer.com"] [uri "/backend/.git/config"] [unique_id "aprvDEoifD5YsVsfcUj28QAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
NihiliousMonk
2026-09-04 16:04:45
(6 hours ago)
Fail2Ban report from jail npm-scanners
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 15:46:54
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 11:46:49.720856 2026] [security2:error] [pid 15071:tid 15071] [client 35.234.111.243:41744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.armorcorp.com"] [uri "/.git/config"] [unique_id "aprn6cDtWYYoZaBhLBGN5QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-04 10:55:58
(11 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 09:09:44
(13 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 08:14:39
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 04:14:32.018821 2026] [security2:error] [pid 1063:tid 1063] [client 35.234.111.243:53196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cajunfriedturkey.com"] [uri "/.git/config"] [unique_id "app96PguiXpMeUik758yAgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 07:50:01
(14 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-04 05:09:29
(17 hours ago)
[ns67.kdns.gr] httpd-config-scan: sites=ipv4.portal.kapaweb.gr; logs=/var/www/vhosts/system/portal.k ...
show more
[ns67.kdns.gr] httpd-config-scan: sites=ipv4.portal.kapaweb.gr; logs=/var/www/vhosts/system/portal.kapaweb.gr/logs/proxy_access_log,/var/www/vhosts/system/portal.kapaweb.gr/logs/proxy_access_ssl_log; samples=/api/.git/config | /public/.git/config | /wordpress/.git/config
show less
Hacking
Web App Attack
🇺🇸
infra-monitor
2026-09-04 05:00:04
(17 hours ago)
Automated ban via infra-monitor: suspicious-probe, mgmt-path-probe
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 04:54:26
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.111.243 (243.111.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:54:20.524880 2026] [security2:error] [pid 16384:tid 16384] [client 35.234.111.243:48402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.patrickmedd.com"] [uri "/api/.git/config"] [unique_id "appO_F1qaHErudbgfBBZiwAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack