Anonymous
2026-10-05 20:09:55
(4 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: DE, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: DE, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
π¨π
π¨π Hosting
2026-10-05 05:10:04
(5 days ago)
Automated WAF report: 1500-2000 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-10-05 00:16:58
(5 days ago)
20 attempts against mh_ha-misbehave-ban on pf221113
Brute-Force
Bad Web Bot
Web App Attack
πͺπΈ
pipeline.es
2026-10-04 23:30:18
(5 days ago)
Web scanning / probing for vulnerable paths | URL: /_phpinfo.php | Evidence: altovolta.es 35.234.88. ...
show more
Web scanning / probing for vulnerable paths | URL: /_phpinfo.php | Evidence: altovolta.es 35.234.88.55 - - [05/Oct/2026:01:30:07 +0200] \"GET /_phpinfo.php HTTP/1.1\" 404 210 \"-\" \"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" GEOIP_COUNTRY_CODE=DE | ASN: GOOGLE-CLOUD-PLATFORM | Country: DE
show less
Port Scan
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 22:44:39
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 35.234.88.55 (55.88.234.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.88.55 (55.88.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 18:44:31.870761 2026] [security2:error] [pid 14404:tid 14404] [client 35.234.88.55:34294] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rhfandsfpquestions.daisydoesoap.com"] [uri "/.git/config"] [unique_id "asLWz7gtr7wP4Gg324MN2QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 22:36:43
(5 days ago)
[da.kdns.gr] httpd-config-scan: sites=www.rheumatologiko.gr; logs=/var/log/httpd/domains/rheumatolog ...
show more
[da.kdns.gr] httpd-config-scan: sites=www.rheumatologiko.gr; logs=/var/log/httpd/domains/rheumatologiko.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
π¨π
backslash
2026-10-04 21:42:00
(5 days ago)
block ruleset WAF detection and high score on abuseIPDB 149EB1B42C242111FADBBC2EF8F90219570691E1
Bad Web Bot
π³π±
Alt255
2026-10-04 21:41:27
(5 days ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.234.88.55 - - [04/Oct/2026:23:41:16 +0200] "GET /.git/config HTTP/2.0" 410 179 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-10-04 19:51:30
(5 days ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-10-04 19:11:59
(5 days ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: DE, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: DE, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-10-04 18:55:11
(5 days ago)
Excessive 404/403 errors
Brute-Force
πΊπΈ
TPI-Abuse
2026-10-04 18:44:11
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 35.234.88.55 (55.88.234.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.88.55 (55.88.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 14:44:06.928254 2026] [security2:error] [pid 23776:tid 23776] [client 35.234.88.55:35746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rgtopnav.kmelson.com"] [uri "/.git/config"] [unique_id "asKedpCruv-q7jhZXmcWGAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 17:58:57
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 35.234.88.55 (55.88.234.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.234.88.55 (55.88.234.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 13:58:53.739869 2026] [security2:error] [pid 14118:tid 14118] [client 35.234.88.55:36310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rgnexcore.com.elpaco.net"] [uri "/.git/config"] [unique_id "asKT3XF6vrLmrY6ZGY7URQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-10-04 17:52:34
(6 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
π³π±
homeshowdomain.nl
2026-09-22 22:03:17
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-21.
show less
Web App Attack
SSH
Hacking