๐ณ๐ฑ
maxxsense
2026-09-02 08:27:37
(12 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.196.40.77 (US/United States/77.40.19 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.196.40.77 (US/United States/77.40.196.35.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-02 06:20:29
(14 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:949110) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:20:26.864184 2026] [security2:error] [pid 8399:tid 8399] [client 35.196.40.77:38000] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "mail.bill-lambert.com"] [uri "/html/.git/config"] [unique_id "apfAKldQXWuhTcZEXVAGpwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-02 06:16:00
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-02 06:15:10
(14 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:53:10
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:53:03.946048 2026] [security2:error] [pid 14144:tid 14144] [client 35.196.40.77:53956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.intellectualcapitalmanagementsystems.com"] [uri "/api/.git/config"] [unique_id "ape5vw5HDvFdkCr3EuP6_AAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 05:36:43
(14 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
mondor.ro
2026-09-02 05:34:13
(14 hours ago)
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.196.40.77, Reason:[ ...
show more
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.196.40.77, Reason:[(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (US/United States/77.40.196.35.bc.googleusercontent.com): 3 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-02 05:28:57
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:28:52.767891 2026] [security2:error] [pid 1470323:tid 1470349] [client 35.196.40.77:38498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.wpe.uk.com"] [uri "/src/.git/config"] [unique_id "ape0FG8wAzAYmzfNtS-pNQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 05:26:42
(15 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.196.40.77 (US/United States/77.40. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.196.40.77 (US/United States/77.40.196.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 05:04:40
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:04:36.543002 2026] [security2:error] [pid 3305:tid 3305] [client 35.196.40.77:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.triplejrealty.com"] [uri "/site/.git/config"] [unique_id "apeuZPxLHq_OJ7VTA3aSZgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:56:05
(15 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:38:08
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:38:03.518970 2026] [security2:error] [pid 303:tid 303] [client 35.196.40.77:36794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.jerryhazlett.com"] [uri "/var/www/.git/config"] [unique_id "apeoK9piCj4aQQad5zx1awAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 21:26:35
(23 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 16:07:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 12:07:34.381436 2026] [security2:error] [pid 18505:tid 18505] [client 35.196.40.77:50840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pacepk.com"] [uri "/.git/config"] [unique_id "apb4Rp5wJQkRWCN6W_oSPgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:55:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.40.77 (77.40.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:55:27.247776 2026] [security2:error] [pid 32640:tid 32640] [client 35.196.40.77:55006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "box.itimetable21.com"] [uri "/www/.git/config"] [unique_id "apbZTwtouisCPEFy6kf_6gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack