๐ฉ๐ช
Jochen Pretli
2026-09-16 11:50:14
(1 day ago)
connection to honeypot
Email Spam
Port Scan
Anonymous
2026-09-16 04:32:14
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
mnsf
2026-09-15 22:05:23
(1 day ago)
Abuse Detected (15)
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-15 21:59:46
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-15 21:39:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:39:17.522085 2026] [security2:error] [pid 7388:tid 7388] [client 35.255.144.26:57208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zenventures.co.uk"] [uri "/.git/config"] [unique_id "aqm7BcKQcAW4lsXukE4FUgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 21:24:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:24:17.403302 2026] [security2:error] [pid 1598838:tid 1598838] [client 35.255.144.26:34482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zenithxen.com"] [uri "/.git/config"] [unique_id "aqm3gYcoH1zkpK5id5CtPAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 21:05:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:05:40.921853 2026] [security2:error] [pid 24216:tid 24216] [client 35.255.144.26:59300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zemincollection.chevronparkett.com"] [uri "/.git/config"] [unique_id "aqmzJJVuQqjsi2kBakLb5wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-15 21:03:15
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-09-15 20:52:26
(1 day ago)
CMS/framework probe: 35.255.144.26 - - [15/Sep/2026:22:52:25 +0200] "GET /.git/config HTTP/1.1" 444 ...
show more
CMS/framework probe: 35.255.144.26 - - [15/Sep/2026:22:52:25 +0200] "GET /.git/config HTTP/1.1" 444 0 "-" "-" asn=396982 org="Google LLC" country=US
...
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 20:50:17
(1 day ago)
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more
[ti-12al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.255.144.26 - - [15/Sep/2026:22:50:16 +0200] "GET /.git/config HTTP/1.1" 404 7942 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:44:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:44:47.251057 2026] [security2:error] [pid 10519:tid 10519] [client 35.255.144.26:36918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zeetec.nl"] [uri "/.git/config"] [unique_id "aqmuP4nsLf2545oWsvtJogAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-15 20:42:46
(1 day ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 20:25:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 16:25:28.515276 2026] [security2:error] [pid 18536:tid 18536] [client 35.255.144.26:44454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zdx.jeranny.com"] [uri "/.git/config"] [unique_id "aqmpuNwvO75eouHqtjKUggAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
gadix
2026-09-15 19:28:38
(1 day ago)
[15/Sep/2026:21:28:36.683484 +0200] aqmcZK6lt7tHgiN7w-iWjQAAAI0 35.255.144.26 48646 127.0.0.1 7081
[ ...
show more
[15/Sep/2026:21:28:36.683484 +0200] aqmcZK6lt7tHgiN7w-iWjQAAAI0 35.255.144.26 48646 127.0.0.1 7081
[15/Sep/2026:21:28:36.894855 +0200] aqmcZK6lt7tHgiN7w-iWjgAAAII 35.255.144.26 48652 127.0.0.1 7081
[15/Sep/2026:21:28:36.904297 +0200] aqmcZK6lt7tHgiN7w-iWjwAAAJQ 35.255.144.26 48664 127.0.0.1 7081
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 19:22:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.144.26 (26.144.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:22:32.204916 2026] [security2:error] [pid 24304:tid 24304] [client 35.255.144.26:57850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zarobot.robertmcatee.com"] [uri "/.git/config"] [unique_id "aqma-Hqe3EkFvb6H5sbGswAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack