๐ฉ๐ช
FD-IX
2026-09-17 08:24:37
(6 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 08:02:42
(6 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฆ๐บ
2000cn.com.au
2026-09-17 07:58:48
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
Site.eu
2026-09-17 04:33:34
(10 hours ago)
Excessive 404/403 errors
Brute-Force
๐ฉ๐ช
LRob
2026-09-16 15:51:45
(23 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-16 15:51 UTC
show less
Hacking
Web App Attack
๐ฌ๐ง
AvonleaConsulting
2026-09-16 14:13:43
(1 day ago)
Scanning unused Default website or suspicious access to valid sites from IP marked as abusive
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 14:11:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:11:14.115945 2026] [security2:error] [pid 10612:tid 10612] [client 35.244.43.255:46420] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.suffecool.suffe.cool"] [uri "/.git/config"] [unique_id "aqqjgkTuZ33sqQSC6o3RrQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 12:51:35
(1 day ago)
apache vulnerability scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 12:48:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:48:32.143868 2026] [security2:error] [pid 9961:tid 9961] [client 35.244.43.255:53760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.substack.diegolaje.com"] [uri "/.git/config"] [unique_id "aqqQII3xN1Ii1nM7hpQA-QAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 07:17:11
(1 day ago)
Bot / seems abusive / Apache connections: 43
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-16 05:04:21
(1 day ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 1s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 05:02:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 01:02:35.563096 2026] [security2:error] [pid 13205:tid 13223] [client 35.244.43.255:48188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.streamriders.com.hdtv55.com"] [uri "/.git/config"] [unique_id "aqoi60M5u1qASJQbYH7SKwAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:03:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.43.255 (255.43.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:03:40.189177 2026] [security2:error] [pid 26363:tid 26363] [client 35.244.43.255:59044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.strawusa.com"] [uri "/.git/config"] [unique_id "aqoHDHu7jMp7e7ldVpbrpAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 02:20:57
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
โจ
2026-09-16 01:40:12
(1 day ago)
Domain : strathlevencarehome.co.uk
Rule : hack
2026-09-16 01:38:53 ***hidden-privacy*** GET /.env.ba ...
show more
Domain : strathlevencarehome.co.uk
Rule : hack
2026-09-16 01:38:53 ***hidden-privacy*** GET /.env.bak - 443 - 35.244.43.255 HTTP/1.1 Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 - www.strathlevencarehome.co.uk 404 0 2 12906 294 155 - -
show less
Hacking
SQL Injection
Brute-Force