🇳🇱
JaRoNL
2026-09-11 12:22:27
(10 minutes ago)
34.35.117.159 - - [11/Sep/2026:14:22:26 +0200] "GET /.git/config HTTP/2.0" 404 1920 "-" "Mozilla/5.0 ...
show more
34.35.117.159 - - [11/Sep/2026:14:22:26 +0200] "GET /.git/config HTTP/2.0" 404 1920 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 12:01:36
(31 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 08:01:32.290342 2026] [security2:error] [pid 10755:tid 10755] [client 34.35.117.159:36718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrsreclamation.com"] [uri "/.git/config"] [unique_id "aqPtnCUjv7HgL0MpFAv8EAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-11 09:57:59
(2 hours ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
TPI-Abuse
2026-09-11 09:21:54
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 05:21:47.218943 2026] [security2:error] [pid 12676:tid 12676] [client 34.35.117.159:59326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrpinman.com"] [uri "/.git/config"] [unique_id "aqPIKyYcRD_KbSRkaZHA2wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-11 09:20:13
(3 hours ago)
Web App Attack
🇬🇧
oja
2026-09-11 08:30:49
(4 hours ago)
Aggressive web scanner
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 08:21:51
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:21:47.301139 2026] [security2:error] [pid 19791:tid 19791] [client 34.35.117.159:54042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrobertdesignbuild.com"] [uri "/.git/config"] [unique_id "aqO6G0oynWaRkIqEGvupkAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
oh.mg
2026-09-11 07:18:40
(5 hours ago)
[Fri Sep 11 09:18:39.667648 2026] [security2:error] [pid 54510:tid 54533] [client 34.35.117.159:0] [ ...
show more
[Fri Sep 11 09:18:39.667648 2026] [security2:error] [pid 54510:tid 54533] [client 34.35.117.159:0] [client 34.35.117.159] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 50)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "eu.mmn.ca"] [uri "/"] [unique_id "aqOrT1H83Ldvd8Q1UuiKfQAAANU"]
[Fri Sep 11 09:18:39.905936 2026] [security2:error] [pid 54510:tid 54515] [client 34.35.117.159:0] [client 34.35.117.159] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 50)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [
...
show less
Web App Attack
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-11 04:42:48
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 00:42:41.322294 2026] [security2:error] [pid 3604:tid 3604] [client 34.35.117.159:59208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrgutierrezshow.com"] [uri "/.git/config"] [unique_id "aqOGwYRPZ7zHfyaFJt7pmAAAAEs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 03:53:46
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 23:53:38.957846 2026] [security2:error] [pid 8475:tid 8475] [client 34.35.117.159:39020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrflatpeople.com"] [uri "/.git/config"] [unique_id "aqN7Qjc7wkMbHNmxPsszyAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
middelkoopcc
2026-09-11 03:27:02
(9 hours ago)
2026-09-11 05:22:25 GET /.git/config [404] && 2026-09-11 05:22:28 GET /.env [404] && 2026-09-11 05:2 ...
show more
2026-09-11 05:22:25 GET /.git/config [404] && 2026-09-11 05:22:28 GET /.env [404] && 2026-09-11 05:22:37 GET /.env.bak [404] && 121 more within 20 minutes
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 03:24:21
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.117.159 (159.117.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 23:24:13.988632 2026] [security2:error] [pid 1551:tid 1551] [client 34.35.117.159:35926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrepoch.art"] [uri "/.git/config"] [unique_id "aqN0XS9N4LE5B0-QqLIVyAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-11 03:05:02
(9 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇳🇱
ConsulHosting
2026-09-11 02:50:12
(9 hours ago)
Excessive failed CAPTCHA attempts (CAPTCHA DoS)
Web App Attack
🇫🇷
dynamix
2026-09-11 00:58:13
(11 hours ago)
Multiple WAF Violations
Web App Attack