๐บ๐ธ
TPI-Abuse
2026-09-02 17:11:45
(21 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 13:11:37.541812 2026] [security2:error] [pid 27883:tid 27883] [client 35.194.203.133:57288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chiller.cloudex.link"] [uri "/.git/config"] [unique_id "aphYySmJ0Sd4noOg9SRmGwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 15:18:32
(2 hours ago)
35.194.203.133 - - [02/Sep/2026:17:18:28 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Lin ...
show more
35.194.203.133 - - [02/Sep/2026:17:18:28 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.194.203.133 - - [02/Sep/2026:17:18:28 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.194.203.133 - - [02/Sep/2026:17:18:29 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.194.203.133 - - [02/Sep/2026:17:18:29 +0200] "GET /.git/config HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.194.203.133 - - [02/Sep/2026:17:18:29 +0200] "GET /.env HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.194.203.133 - - [02/Sep/2026:17:18:29 +0200] "GET /.env.local HTTP/1.1" 40
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 15:18:06
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 11:18:01.752039 2026] [security2:error] [pid 12536:tid 12536] [client 35.194.203.133:33782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chilako.com"] [uri "/.git/config"] [unique_id "apg-KV3P523_HjP5ItNxYwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ช
maxxsense
2026-09-02 15:05:46
(2 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.194.203.133 (TW/Taiwan/133.203.194.3 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.194.203.133 (TW/Taiwan/133.203.194.35.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-02 14:35:20
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:35:16.570082 2026] [security2:error] [pid 1463:tid 1463] [client 35.194.203.133:60356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chiggerland.digifonics.com"] [uri "/.git/config"] [unique_id "apg0JMxV65mF8P6m9XwNegAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 12:23:41
(5 hours ago)
(mod_security) mod_security (id:210730) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:23:37.261602 2026] [security2:error] [pid 2814:tid 2814] [client 35.194.203.133:53308] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.chick-esophageal-size-prediction.larryyang.net|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.chick-esophageal-size-prediction.larryyang.net"] [uri "/.env.bak"] [unique_id "apgVSTFNGTXKRIpABGuRLwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 11:48:05
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 07:47:57.052537 2026] [security2:error] [pid 3438:tid 3438] [client 35.194.203.133:50180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.chicamaecosina.michaelsabbey.org"] [uri "/.git/config"] [unique_id "apgM7a5B1OUs6y0tELA_aQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:29:05
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.203.133 (133.203.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:28:56.960782 2026] [security2:error] [pid 2393:tid 2393] [client 35.194.203.133:34750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cheynans.mmldesign.com"] [uri "/.git/config"] [unique_id "apfeSMy_-tVdFI_uQBJBLAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 07:56:44
(9 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
4server
2026-09-02 06:04:36
(11 hours ago)
[WedSep0208:04:33.5812182026][security2:error][pid1034882:tid1034904][client35.194.203.133:0]ModSecu ...
show more
[WedSep0208:04:33.5812182026][security2:error][pid1034882:tid1034904][client35.194.203.133:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.chesasilva.ch.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"ape8ccNo3EiaANQVfMYmrwAAAAo\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
Octopuce
2026-09-02 04:32:46
(13 hours ago)
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
Web App Attack
๐จ๐ณ
Zhengka.net
2026-09-02 02:34:29
(14 hours ago)
zhengka.net security honeypot hit; jail=zhengka.net_honeypot; ip=35.194.203.133
Port Scan
Web App Attack
๐ฆ๐น
penguin-solutions.at
2026-09-02 01:18:23
(16 hours ago)
Excessive 403/404 errors
...
Brute-Force
Web App Attack
Anonymous
2026-09-02 01:06:59
(16 hours ago)
[da.kdns.gr] httpd-config-scan: sites=www.chemicalanalysis.gr; logs=/var/log/httpd/domains/chemicala ...
show more
[da.kdns.gr] httpd-config-scan: sites=www.chemicalanalysis.gr; logs=/var/log/httpd/domains/chemicalanalysis.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-09-02 00:21:35
(17 hours ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
133.203.194.35.bc.googleusercontent.com
Web App Attack