๐ฟ๐ฆ
conure.sh
2026-10-05 01:26:17
(14 hours ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐ซ๐ท
masterguru
2026-10-05 01:18:16
(14 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-05 00:30:00
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.236.44.130 (130.44.236.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.44.130 (130.44.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 20:29:54.129615 2026] [security2:error] [pid 18227:tid 18227] [client 35.236.44.130:53820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.refinery.ic1.biz"] [uri "/.git/config"] [unique_id "asLvgqGiIiqLXgjiuQt_PwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-05 00:21:29
(15 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
Site.eu
2026-10-04 23:54:38
(15 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-10-04 23:22:05
(16 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-10-04 23:13:50
(16 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-10-04 21:54:20
(17 hours ago)
(web_sensitive_file) srv102 Sensitive file probe (.env/.git/backup) 35.236.44.130 (US/United States/ ...
show more
(web_sensitive_file) srv102 Sensitive file probe (.env/.git/backup) 35.236.44.130 (US/United States/130.44.236.35.bc.googleusercontent.com): 2 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-04 21:24:08
(18 hours ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-04 20:27:47
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.236.44.130 (130.44.236.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.44.130 (130.44.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:27:41.084798 2026] [security2:error] [pid 21074:tid 21074] [client 35.236.44.130:53306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.reelfruits.com.fruitinthedesert.com"] [uri "/.git/config"] [unique_id "asK2vT74MFL9S9yoN-SiGwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-10-04 19:15:03
(20 hours ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 18:20:22
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.236.44.130 (130.44.236.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.236.44.130 (130.44.236.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 14:20:19.456881 2026] [security2:error] [pid 20075:tid 20075] [client 35.236.44.130:52750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.redwingboot.com.cajunfriedturkey.com"] [uri "/.git/config"] [unique_id "asKY40CByDEl5CuPeBrAgwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 18:11:15
(21 hours ago)
...
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-21 22:03:17
(1 week ago)
Auto-ban: >3000 req/min op 2026-09-21
Web App Attack
SSH
Hacking
๐ฌ๐ง
bensmithurst
2026-09-21 09:59:55
(2 weeks ago)
2026/09/21 09:59:52 [error] 1615865#1615865: *17864 open() "/var/www/parked/mailer/.env" failed (2: ...
show more
2026/09/21 09:59:52 [error] 1615865#1615865: *17864 open() "/var/www/parked/mailer/.env" failed (2: No such file or directory), client: 35.236.44.130, server: www.smithurst.uk, request: "GET /mailer/.env HTTP/1.0", host: "www.smithurst.uk"
2026/09/21 09:59:52 [error] 1615865#1615865: *17866 open() "/var/www/parked/mail/.env" failed (2: No such file or directory), client: 35.236.44.130, server: www.smithurst.uk, request: "GET /mail/.env HTTP/1.0", host: "www.smithurst.uk"
2026/09/21 09:59:53 [error] 1615865#1615865: *17872 open() "/var/www/parked/mailing/.env" failed (2: No such file or directory), client: 35.236.44.130, server: www.smithurst.uk, request: "GET /mailing/.env HTTP/1.0", host: "www.smithurst.uk"
2026/09/21 09:59:54 [error] 1615868#1615868: *17892 open() "/var/www/parked/mailgun/.env" failed (2: No such file or directory), client: 35.236.44.130, server: www.smithurst.uk, request: "GET /mailgun/.env HTTP/1.0", host: "www.smithurst.uk"
2026/09/21 09:59:55 [error] 1615868#1615
... [host=CER***]
show less
Web App Attack