๐จ๐ญ
4server
2026-09-01 09:29:52
(5 hours ago)
[TueSep0111:29:48.9239642026][security2:error][pid2689102:tid2689295][client35.189.164.172:0]ModSecu ...
show more
[TueSep0111:29:48.9239642026][security2:error][pid2689102:tid2689295][client35.189.164.172:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"hosting-e-domini.com\"][uri\"/.git/config\"][unique_id\"apabDFonop4bJduQmQHZAQAAAQU\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 04:29:52
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:29:44.457968 2026] [security2:error] [pid 3259:tid 3259] [client 35.189.164.172:18266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caymancline.com"] [uri "/.git/config"] [unique_id "apZUuDLQCx_wV7-jHngDUgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 02:46:24
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:46:18.989247 2026] [security2:error] [pid 2885:tid 2885] [client 35.189.164.172:49560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "argcreativegroup.com"] [uri "/.git/config"] [unique_id "apY8ei3vndzZ2QHEXAXotAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 01:13:56
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 21:13:50.475804 2026] [security2:error] [pid 10857:tid 10857] [client 35.189.164.172:54316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "genesis-one.com"] [uri "/.git/config"] [unique_id "apYmziBxUH1nOE9v7rXJsAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-31 21:50:24
(17 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 19:32:31
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 15:32:27.840379 2026] [security2:error] [pid 21127:tid 21127] [client 35.189.164.172:9376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xtcdesigns.com"] [uri "/.git/config"] [unique_id "apXWyz56Xyhz3a4NolXhrwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-31 18:46:55
(20 hours ago)
Web probing (2 hits in 24h) on default-vhost,vestingstadvalkenburg.nl: sensitive-path scans and/or 4 ...
show more
Web probing (2 hits in 24h) on default-vhost,vestingstadvalkenburg.nl: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 17:27:26
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 13:27:19.283388 2026] [security2:error] [pid 28667:tid 28667] [client 35.189.164.172:35236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thegreatleapforward.com"] [uri "/.git/config"] [unique_id "apW5dy0sF7XRhQrkwEBXOAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 16:45:30
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:45:25.684941 2026] [security2:error] [pid 10928:tid 10928] [client 35.189.164.172:61164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stonesandbones.net"] [uri "/.git/config"] [unique_id "apWvpfZ8bylFUjgLuYvJ5gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 15:36:37
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:36:32.391886 2026] [security2:error] [pid 12843:tid 12843] [client 35.189.164.172:33868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "renperfco.com"] [uri "/.git/config"] [unique_id "apWfgD3C6fwbT3uJuQYpCgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 14:52:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:52:34.979623 2026] [security2:error] [pid 10582:tid 10582] [client 35.189.164.172:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "perl-photo.com"] [uri "/.git/config"] [unique_id "apWVMq8_-XqzLUPif_Q0IAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-31 14:43:27
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-08-31 13:12:06
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 35.189.164.172 (TW/Taiwan/172.164.189.35.bc.goo ...
show more
(mod_security) mod_security (id:949110) triggered by 35.189.164.172 (TW/Taiwan/172.164.189.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:04:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.189.164.172 (172.164.189.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:04:28.983476 2026] [security2:error] [pid 2217:tid 2217] [client 35.189.164.172:37584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "memphislimousines.com"] [uri "/.git/config"] [unique_id "apVtzHQtB6JGuhNXWmJD2wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-31 10:54:32
(1 day ago)
High-confidence malicious configuration/VCS probe
Web App Attack