π³π±
homeshowdomain.nl
2026-05-23 22:00:31
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-22.
show less
Web App Attack
SSH
Hacking
π³π±
homeshowdomain.nl
2026-05-22 22:02:10
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-05-22
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-05-22 19:08:04
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 15:07:58.946003 2026] [security2:error] [pid 11734:tid 11734] [client 8.35.192.73:59184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.proofs.cdphotography.us.postermodelsworldwideinc.com"] [uri "/.git/config"] [unique_id "ahCpjuxDr1ckUCh2AHyvtAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-05-22 17:42:54
(2 weeks ago)
1.634 requests with url.path *.git/*
Brute-Force
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-05-22 16:08:21
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 12:08:16.747237 2026] [security2:error] [pid 20920:tid 20920] [client 8.35.192.73:36620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abq4you.com.peterlundman.com"] [uri "/.git/config"] [unique_id "ahB_cIyLKkD_uwGJqbJ45AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
webko.si
2026-05-22 13:27:49
(2 weeks ago)
BARUTANA.si: Bruteforce web app access, URI detail: '/.git/config'.
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 12:42:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 08:42:34.742640 2026] [security2:error] [pid 9767:tid 9767] [client 8.35.192.73:50488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "richardpetersbooks.com"] [uri "/.git/config"] [unique_id "ahBPOsWMNV2kw1Gw483ZlwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 09:37:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 05:37:43.679672 2026] [security2:error] [pid 2075:tid 2075] [client 8.35.192.73:50222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.eugeniocosta.com"] [uri "/.git/config"] [unique_id "ahAj5yyGg2gL6WNVm6CwYgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 08:57:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 04:57:53.740407 2026] [security2:error] [pid 6915:tid 6915] [client 8.35.192.73:33146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.prolifeli.org"] [uri "/.git/config"] [unique_id "ahAakQf3UwyfnTPNIrEuEQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 08:24:51
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 04:24:46.188017 2026] [security2:error] [pid 20388:tid 20388] [client 8.35.192.73:59218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ticmonster.com"] [uri "/.git/config"] [unique_id "ahASzqBQ2xOgF1pBXjvh0AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-22 08:08:49
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.35.192.73 (73.192.35.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 04:08:43.224814 2026] [security2:error] [pid 15405:tid 15405] [client 8.35.192.73:54506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.shawnlayne.com"] [uri "/.git/config"] [unique_id "ahAPCyx8YJxi59TdCacpfwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Cloud86 B.V.
2026-05-22 04:13:01
(2 weeks ago)
categories: DDoS Attack
DDoS Attack
πΈπͺ
donarev419
2026-05-20 08:15:00
(2 weeks ago)
Connection to port 5001 with data transfer.
Data preview: οΏ½
Port Scan
Hacking
π¬π§
PeravixGroup
2026-05-19 21:51:40
(2 weeks ago)
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severit ...
show more
Honeypot detection: Kubernetes API unauthorized access / cluster abuse attempt on port 6443. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host