๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 22:00:14
(4 hours ago)
Auto-ban: >3000 req/min op 2026-09-02
Web App Attack
SSH
Hacking
๐ฉ๐ช
LRob
2026-09-02 21:09:46
(5 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config (+1 more) | 2026-09-02 21:09 UTC
show less
Hacking
Web App Attack
Anonymous
2026-09-02 16:30:01
(9 hours ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
ConsulHosting
2026-09-02 15:13:48
(11 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
Anonymous
2026-09-02 14:20:36
(12 hours ago)
35.240.94.198 - - [02/Sep/2026:09:20:34 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Window ...
show more
35.240.94.198 - - [02/Sep/2026:09:20:34 -0500] "GET /.env HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 172.71.123.100
35.240.94.198 - - [02/Sep/2026:09:20:34 -0500] "GET /.env.local HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 172.71.123.100
35.240.94.198 - - [02/Sep/2026:09:20:34 -0500] "GET /.env.production HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 172.71.123.100
35.240.94.198 - - [02/Sep/2026:09:20:34 -0500] "GET /.env.staging HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 172.71.123.100
35.240.94.198 - - [02/Sep/2026:09:20:34 -0500] "GET /.env.development HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) Appl
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 09:38:22
(16 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 09:33:00
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.94.198 (198.94.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.94.198 (198.94.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 05:32:56.557539 2026] [security2:error] [pid 3226825:tid 3227017] [client 35.240.94.198:53750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saludmyg.com.neotienda.com"] [uri "/.git/config"] [unique_id "apftSOs1UIk8zkouoRW3VAAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 09:03:04
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.94.198 (198.94.240.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.94.198 (198.94.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 05:02:54.602236 2026] [security2:error] [pid 3465:tid 3465] [client 35.240.94.198:43286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saltym.robertmcatee.com"] [uri "/.git/config"] [unique_id "apfmPktlDQUMIgxNEwKPmwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-09-02 08:12:13
(18 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ฟ๐ฆ
conure.sh
2026-09-02 07:02:09
(19 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 1s
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 05:40:48
(20 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-02 05:13:45
(21 hours ago)
251 attacks on config grabbing URLs (type 2), PHP URLs, env grabbing URLs, VC URLs:
GET /application ...
show more
251 attacks on config grabbing URLs (type 2), PHP URLs, env grabbing URLs, VC URLs:
GET /application_default_credentials.json HTTP/1.1
GET /includes/phpinfo.php HTTP/1.1
GET /config/app/.env HTTP/1.1
GET /.git/config HTTP/1.1
show less
Hacking
Web App Attack
๐จ๐ญ
4server
2026-09-02 05:09:54
(21 hours ago)
[WedSep0207:09:47.2193282026][security2:error][pid2349585:tid2349604][client35.240.94.198:0]ModSecur ...
show more
[WedSep0207:09:47.2193282026][security2:error][pid2349585:tid2349604][client35.240.94.198:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.salonesamire.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"apevm6E-sud2a92KWsDWPQAAAQI\"]
show less
Hacking
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:57:05
(21 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 04:45:07
(21 hours ago)
Excessive multi-domain requests
Brute-Force