๐ณ๐ฑ
homeshowdomain.nl
2026-06-09 22:00:37
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-08.
show less
Web App Attack
SSH
Hacking
๐ท๐ด
INTEQ
2026-06-09 16:20:44
(1 week ago)
Web attack from 35.240.200.65
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-06-09 15:50:39
(1 week ago)
[Wed Jun 10 01:50:38.642960 2026] [security2:error] [pid 273648] [client 35.240.200.65:55460] [clien ...
show more
[Wed Jun 10 01:50:38.642960 2026] [security2:error] [pid 273648] [client 35.240.200.65:55460] [client 35.240.200.65] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "support.paulshipley.com.au"] [uri "/.git/config"] [unique_id "aig2TsFjHF8dFaCPdpN0cwAAAAY"]
...
show less
Web App Attack
๐บ๐ธ
brantknudson.org
2026-06-09 13:34:48
(1 week ago)
Request path 'GET /.git/config HTTP/1.1'
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 12:04:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 08:04:38.425713 2026] [security2:error] [pid 9610:tid 9610] [client 35.240.200.65:37038] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "homerbiz.com"] [uri "/.git/config"] [unique_id "aigBVux6pzamr1MSBCELXwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
cmbplf
2026-06-09 11:34:13
(1 week ago)
2.546 requests from abuseipdb.com blacklisted IP (5mos3d22h)
Brute-Force
Bad Web Bot
Anonymous
2026-06-09 09:15:50
(1 week ago)
35.240.200.65 - - [09/Jun/2026:06:15:49 -0300] "GET /.git/config HTTP/1.1" 403 146 "-" "Mozilla/5.0 ...
show more
35.240.200.65 - - [09/Jun/2026:06:15:49 -0300] "GET /.git/config HTTP/1.1" 403 146 "-" "Mozilla/5.0 (iPod; U; CPU iPhone OS 2_2_1 like Mac OS X; en-us) AppleWebKit/525.18.1 (KHTML, like Gecko) Version/3.1.1 Mobile/5H11a Safari/525.20"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-06-09 08:13:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:13:11.494387 2026] [security2:error] [pid 12924:tid 12924] [client 35.240.200.65:55974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blackstarmgmt.com.mydobdate.net"] [uri "/.git/config"] [unique_id "aifLFzZwUhjSjYnXQBcIcQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-09 07:34:19
(1 week ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.240.200.65 (SG/Singapore/65.200.24 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.240.200.65 (SG/Singapore/65.200.240.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ง๐ช
voormedia
2026-06-09 06:14:58
(1 week ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:44:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:44:03.125674 2026] [security2:error] [pid 27652:tid 27652] [client 35.240.200.65:56408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cgautomatizacion.com"] [uri "/.git/config"] [unique_id "aieoI6LjHHdS878hfOnkMgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-06-09 04:08:01
(1 week ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:47:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:47:47.502697 2026] [security2:error] [pid 31019:tid 31030] [client 35.240.200.65:52634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "darkestmoonart.com"] [uri "/.git/config"] [unique_id "aieM41glwuBpRuRWTAqAsQAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-06-09 03:24:08
(1 week ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:18:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.200.65 (65.200.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:18:28.765289 2026] [security2:error] [pid 16364:tid 16364] [client 35.240.200.65:42204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ashotofcoffee.com"] [uri "/.git/config"] [unique_id "aieGBNoMpqtWQLQt6ECCQQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack