🇿🇦
conure.sh
2026-08-25 12:00:34
(2 weeks ago)
csagent: score 20.4: 404 noise floor x2, secrets grab x2; 1 domain(s) in 1s
Web App Attack
🇳🇱
homeshowdomain.nl
2026-08-24 22:00:40
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-08-24
Web App Attack
SSH
Hacking
🇩🇪
Blexyel
2026-08-24 19:11:20
(2 weeks ago)
35.236.160.138 - - [24/Aug/2026:21:11:19 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "-"
...
Brute-Force
Web App Attack
🇳🇱
ipoac.nl
2026-08-24 18:54:24
(2 weeks ago)
-:443 35.236.160.138 - - [24/Aug/2026:20:54:23 +0200] - "GET /.git/config HTTP/1.1" 403 6354 "-" "-"
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-24 18:44:55
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:44:48.178315 2026] [security2:error] [pid 23776:tid 23776] [client 35.236.160.138:46718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.emailautomationworkflow.wholesalelivelobsters.com"] [uri "/.git/config"] [unique_id "aoyRIGK64zFJW45RUzSDwgAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 18:17:35
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:17:31.806246 2026] [security2:error] [pid 15714:tid 15714] [client 35.236.160.138:58224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aguaflot.aguasolar.com"] [uri "/.git/config"] [unique_id "aoyKu-KGWkAfzIJvHk4ZyAAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇦
Olexiy Backend
2026-08-24 18:12:17
(2 weeks ago)
35.236.160.138
...
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 18:01:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:01:35.750150 2026] [security2:error] [pid 13792:tid 13792] [client 35.236.160.138:51010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chrestian.com.gasoilliquidsdaily.com"] [uri "/.git/config"] [unique_id "aoyG_9fMQWx2kUq7SaKRlgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-24 17:49:12
(2 weeks ago)
Web attack blocked by Wordfence on www.charlesquaedvlieg.nl (1 hit). Reported by CRMON.
Web App Attack
🇷🇺
cnaize
2026-08-24 17:41:21
(2 weeks ago)
Malicious activity blocked by Meds firewall
Port Scan
🇺🇸
TPI-Abuse
2026-08-24 17:31:35
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 13:31:31.615699 2026] [security2:error] [pid 8020:tid 8020] [client 35.236.160.138:49150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thegyde.com"] [uri "/.git/config"] [unique_id "aox_8_9fg6zJuWAAO_tsVgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-24 16:49:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.160.138 (138.160.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 12:49:46.716389 2026] [security2:error] [pid 530:tid 530] [client 35.236.160.138:40166] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conversationtalentnetwork.com"] [uri "/.git/config"] [unique_id "aox2KsSEaXZtsZu9govylAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
on-com
2026-08-24 16:45:39
(2 weeks ago)
URL scan
Brute-Force
Web App Attack
🇩🇪
FD-IX
2026-08-24 16:44:09
(2 weeks ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇩🇪
Blexyel
2026-08-24 16:42:31
(2 weeks ago)
35.236.160.138 - - [24/Aug/2026:18:42:29 +0200] "GET /.git/config HTTP/1.1" 404 146 "-" "-" "cloud.p ...
show more
35.236.160.138 - - [24/Aug/2026:18:42:29 +0200] "GET /.git/config HTTP/1.1" 404 146 "-" "-" "cloud.phoenixts.eu"
...
show less
Brute-Force
Web App Attack