๐บ๐ธ
mnsf
2026-09-16 07:05:09
(4 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-09-16 06:43:04
(4 hours ago)
[WedSep1608:42:57.8752882026][security2:error][pid2639012:tid2639137][client35.187.86.143:0]ModSecur ...
show more
[WedSep1608:42:57.8752882026][security2:error][pid2639012:tid2639137][client35.187.86.143:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.benvenutialfood.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aqo6ceso3n81PDa-szZQlgAAAJY\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 05:32:42
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 01:32:36.978305 2026] [security2:error] [pid 24353:tid 24353] [client 35.187.86.143:37992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.benshermanclassicalguitar.benshermanguitar.com"] [uri "/.git/config"] [unique_id "aqop9Ax9ltJSbwR9_hGu_AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-16 04:50:02
(6 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 04:18:41
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:18:35.423674 2026] [security2:error] [pid 23481:tid 23481] [client 35.187.86.143:35272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bennefeld.k0cgy.net"] [uri "/.git/config"] [unique_id "aqoYm7t8tgdG59GI8v9r3QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:56:49
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:56:45.534921 2026] [security2:error] [pid 1299:tid 1299] [client 35.187.86.143:34598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.benkatkin.passy.us"] [uri "/.git/config"] [unique_id "aqoTfRZu4oFav3XWLMsM2wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:05:37
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:05:34.647488 2026] [security2:error] [pid 24050:tid 24050] [client 35.187.86.143:49352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.benissan.com.neneh.biz"] [uri "/.git/config"] [unique_id "aqoHfrW5f_z-OQ-iGZXZugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 02:34:55
(8 hours ago)
(config_exploit_scan) Configuratie Scanner / Nep GPTBot 35.187.86.143 (BE/Belgium/143.86.187.35.bc.g ...
show more
(config_exploit_scan) Configuratie Scanner / Nep GPTBot 35.187.86.143 (BE/Belgium/143.86.187.35.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 35.187.86.143 - - [16/Sep/2026:04:34:50 +0200] "GET /.env HTTP/1.1" 406 518
35.187.86.143 - - [16/Sep/2026:04:34:50 +0200] "GET /.env.local HTTP/1.1" 406 5103
35.187.86.143 - - [16/Sep/2026:04:34:50 +0200] "GET /.env.production HTTP/1.1" 406 5103
show less
Port Scan
๐ณ๐ฑ
Site.eu
2026-09-16 01:54:30
(9 hours ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
masterguru
2026-09-16 01:24:54
(10 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:24:30
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.187.86.143 (143.86.187.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:24:26.568238 2026] [security2:error] [pid 2526:tid 2526] [client 35.187.86.143:44562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bencramerorg.bencramerinc.com"] [uri "/.git/config"] [unique_id "aqnhugpREpTOIoWMqkYIUwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-09-15 23:51:50
(11 hours ago)
(modsecurity) srv104 ModSecurity 35.187.86.143 (BE/Belgium/143.86.187.35.bc.googleusercontent.com): ...
show more
(modsecurity) srv104 ModSecurity 35.187.86.143 (BE/Belgium/143.86.187.35.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-15 23:24:22
(12 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-09-15 22:50:01
(12 hours ago)
suspicious request in access.log
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-15 22:02:02
(13 hours ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking