๐ซ๐ฎ
paissangroup
2026-09-17 09:34:48
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐ง๐ท
Halux
2026-09-17 09:18:44
(1 hour ago)
35.240.225.196 Probing protected path or service
Web App Attack
๐บ๐ธ
Lee Daniel
2026-09-17 08:15:51
(2 hours ago)
35.240.225.196 - - [17/Sep/2026:04:15:51 -0400] "GET /.env HTTP/1.1" 403 6291 "-" "Mozilla/5.0 (X11; ...
show more
35.240.225.196 - - [17/Sep/2026:04:15:51 -0400] "GET /.env HTTP/1.1" 403 6291 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
๐จ๐ญ Hosting
2026-09-17 05:10:04
(5 hours ago)
Automated WAF report: 1500-2000 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 04:01:18
(6 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
WellSpring
2026-09-17 03:12:39
(7 hours ago)
env leak on wellspr.ing/public/.env โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-16 21:59:43
(12 hours ago)
Auto-ban: >3000 req/min op 2026-09-16
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 16:44:43
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 12:44:39.110379 2026] [security2:error] [pid 32097:tid 32097] [client 35.240.225.196:48152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rockinr.brushmileage.org"] [uri "/.git/config"] [unique_id "aqrHd65Ezu0juHGMTKPezQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 15:59:45
(18 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ช๐ธ
robotstxt
2026-09-16 15:29:11
(19 hours ago)
35.240.225.196 - - [16/Sep/2026:15:28:52 +0000] "POST / HTTP/1.1" 403 20278 "-" "Mozilla/5.0 (X11; L ...
show more
35.240.225.196 - - [16/Sep/2026:15:28:52 +0000] "POST / HTTP/1.1" 403 20278 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.240.225.196"
35.240.225.196 - - [16/Sep/2026:15:28:52 +0000] "POST / HTTP/1.1" 403 20278 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.240.225.196"
35.240.225.196 - - [16/Sep/2026:15:28:53 +0000] "GET /.git/config HTTP/1.1" 403 15956 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.240.225.196"
35.240.225.196 - - [16/Sep/2026:15:28:54 +0000] "GET /.env HTTP/1.1" 403 15956 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.240.225.196"
35.240.225.196 - - [16/Sep/2026:15:28:54 +0000] "GET /.env.local HTTP/1.1" 403 15956 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:28:19
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:28:15.350779 2026] [security2:error] [pid 15706:tid 15706] [client 35.240.225.196:50864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.robotsinme.rimaine.org"] [uri "/.git/config"] [unique_id "aqq1j-nEipqwM6jNAq50lgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:35:07
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:35:02.804738 2026] [security2:error] [pid 26693:tid 26693] [client 35.240.225.196:34968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rhfandsfpquestions.daisydoesoap.com"] [uri "/.git/config"] [unique_id "aqqpFv7AkbFRPLIPfQ-5YQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kkw
2026-09-16 14:12:49
(20 hours ago)
[REDACTED] 35.240.225.196 - - [16/Sep/2026:16:12:48 +0200] "GET /.git/config HTTP/1.1" 404 562 "-" " ...
show more
[REDACTED] 35.240.225.196 - - [16/Sep/2026:16:12:48 +0200] "GET /.git/config HTTP/1.1" 404 562 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 13:54:14
(20 hours ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.240.225.196 - - [16/Sep/2026:15:54:08 +0200] "GET /.git/config HTTP/2.0" 410 502 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 13:26:39
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.225.196 (196.225.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:26:36.073849 2026] [security2:error] [pid 22408:tid 22408] [client 35.240.225.196:51832] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.robcruickshank.net.robcruickshank.com"] [uri "/.git/config"] [unique_id "aqqZDOi0kfFaCgjh4GWxfQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack