๐บ๐ธ
TPI-Abuse
2026-10-05 00:42:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 20:42:44.831783 2026] [security2:error] [pid 9337:tid 9337] [client 35.197.147.122:52752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cursos.logosformacion.net"] [uri "/.git/config"] [unique_id "asLyhEGSDbJk3ZBoJa_PpAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 23:33:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 19:33:51.597685 2026] [security2:error] [pid 28554:tid 28554] [client 35.197.147.122:40030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cursoastrologia.verdadesreales.com"] [uri "/.git/config"] [unique_id "asLiX7TdMIYC7GiSQYiWTwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-10-04 23:22:23
(1 day ago)
35.197.147.122 - - [04/Oct/2026:23:21:34 +0000] "POST / HTTP/1.1" 403 19376 "-" "Mozilla/5.0 (Window ...
show more
35.197.147.122 - - [04/Oct/2026:23:21:34 +0000] "POST / HTTP/1.1" 403 19376 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.197.147.122"
35.197.147.122 - - [04/Oct/2026:23:21:34 +0000] "POST / HTTP/1.1" 403 19376 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.197.147.122"
35.197.147.122 - - [04/Oct/2026:23:21:35 +0000] "GET /.git/config HTTP/1.1" 403 19120 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.197.147.122"
35.197.147.122 - - [04/Oct/2026:23:21:36 +0000] "GET /.env HTTP/1.1" 403 19118 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "-" edge="35.197.147.122"
35.197.147.122 - - [04/Oct/2026:23:21:36 +0000] "GET /.env.local HTTP/1.1" 403 19118 "-" "Mozilla/5.0 (Wind
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-04 22:29:59
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-04 22:29:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 18:29:29.786007 2026] [security2:error] [pid 15278:tid 15278] [client 35.197.147.122:47744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.curriculum-web.com.creartest.com"] [uri "/.git/config"] [unique_id "asLTSf8w4lrqSRSpFMmw_gAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 21:45:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 17:45:50.650498 2026] [security2:error] [pid 17611:tid 17611] [client 35.197.147.122:33008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.currency.ic1.biz"] [uri "/.git/config"] [unique_id "asLJDj3rzXfv3YybudkPXwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-10-04 21:12:39
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-10-04 20:42:43
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 20:39:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.147.122 (122.147.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 16:39:32.185520 2026] [security2:error] [pid 15112:tid 15112] [client 35.197.147.122:57114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.curiousnarwhal.gregorii.com"] [uri "/.git/config"] [unique_id "asK5hEpwBBg7Ers5HACW4AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-04 19:52:57
(1 day ago)
35.197.147.122 - - [04/Oct/2026:19:52:56 +0000] "GET /.git/config HTTP/1.1" 404 3018 "-" "Mozilla/5. ...
show more
35.197.147.122 - - [04/Oct/2026:19:52:56 +0000] "GET /.git/config HTTP/1.1" 404 3018 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-10-04 19:30:03
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-04 18:10:17
(1 day ago)
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-17al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.197.147.122 - - [04/Oct/2026:20:10:15 +0200] "GET /.git/config HTTP/1.1" 301 604 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-22 22:05:12
(1 week ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-21.
show less
Web App Attack
SSH
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-09-21 22:00:31
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-09-21
Web App Attack
SSH
Hacking
๐ซ๐ท
dynamix
2026-09-21 11:01:05
(2 weeks ago)
Multiple WAF Violations
Web App Attack