🇺🇸
TPI-Abuse
2026-09-19 08:10:52
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 04:10:44.598350 2026] [security2:error] [pid 30452:tid 30452] [client 34.35.189.221:53572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northwestarbor-culture.com"] [uri "/.git/config"] [unique_id "aq5DhHnQZ5qH-PzWPEc2qgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-19 06:13:24
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 02:13:20.163177 2026] [security2:error] [pid 29903:tid 29903] [client 34.35.189.221:48218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northstar-village.org"] [uri "/.git/config"] [unique_id "aq4oANefzNcqLY0BK8bj7AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇲🇽
octageeks.com
2026-09-19 04:11:49
(5 hours ago)
Wordpress malicious attack:[octablocked]
Web App Attack
🇺🇸
TPI-Abuse
2026-09-19 01:50:28
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 21:50:24.735325 2026] [security2:error] [pid 10348:tid 10348] [client 34.35.189.221:34044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northfortworthalliance.com"] [uri "/.git/config"] [unique_id "aq3qYN7Fli5l28ruGk1KSgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-19 00:26:26
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 20:26:20.776773 2026] [security2:error] [pid 23726:tid 23726] [client 34.35.189.221:59400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northernlightsbev.com.printorganic.com"] [uri "/.git/config"] [unique_id "aq3WrH3LIrBX4IFfoUnfGgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-19 00:08:28
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 20:08:23.742701 2026] [security2:error] [pid 21589:tid 21589] [client 34.35.189.221:41764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northernfrontier.net"] [uri "/.git/config"] [unique_id "aq3SdwAeHaG2IXNrLz1RagAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
rsa
2026-09-18 23:17:00
(10 hours ago)
GET /api/dev/.env HTTP/1.1
DDoS Attack
Exploited Host
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-18 22:01:49
(12 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-17.
show less
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-18 18:36:52
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 14:36:44.358762 2026] [security2:error] [pid 20317:tid 20317] [client 34.35.189.221:37630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nortevista.com"] [uri "/.git/config"] [unique_id "aq2EvG_A_x5BprH8w6Z6KAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 16:06:53
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 12:06:47.737304 2026] [security2:error] [pid 13595:tid 13595] [client 34.35.189.221:42496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "normsrotorservice.com"] [uri "/.git/config"] [unique_id "aq1hl71AfFv7Yc_1B2smCwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇷
Sergio de Souza Pascali
2026-09-18 13:39:31
(20 hours ago)
Automated web probing/attacks (blocked requests and sensitive-path scans) against www.norluz.com.br
Web App Attack
Bad Web Bot
Brute-Force
🇺🇸
TPI-Abuse
2026-09-18 12:55:32
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 08:55:28.546157 2026] [security2:error] [pid 24756:tid 24756] [client 34.35.189.221:60816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "norinpaco.com"] [uri "/.git/config"] [unique_id "aq00wGfPw2ZS4LO-KlwvSAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 11:20:21
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.35.189.221 (221.189.35.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 07:20:15.051315 2026] [security2:error] [pid 7565:tid 7565] [client 34.35.189.221:36654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "noreservationslocations.com"] [uri "/.git/config"] [unique_id "aq0eb84WzHdAGVbBKRfehAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-18 10:50:01
(23 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-18 10:11:43
(23 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: ZA, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: ZA, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack