Anonymous
2026-09-05 22:01:37
(1 hour ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
Anonymous
2026-09-05 21:30:02
(2 hours ago)
suspicious request in access.log
Web App Attack
🇫🇷
dynamix
2026-09-05 12:42:35
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇫🇮
mnazibo
2026-09-05 11:00:07
(12 hours ago)
Date: 05/Sep/2026 13:25:10 | Reported IP: 35.197.177.76 mod_security | id: 930130 | AU/group.my_doma ...
show more
Date: 05/Sep/2026 13:25:10 | Reported IP: 35.197.177.76 mod_security | id: 930130 | AU/group.my_domain/- | Connections: 12 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /api/.git/config; /app/.git/config; /backend/.git/config; /.git/config; /htdocs/.git/config; /html/.git/config; /public/.git/config; /site/.git/config; /src/.git/config; /var/www/.git/config; /wordpress/.git/config; /www/.git/config | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-05 02:31:29
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 22:31:21.947922 2026] [security2:error] [pid 6060:tid 6060] [client 35.197.177.76:50062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rjhills.com"] [uri "/app/.git/config"] [unique_id "apt--VB11YTVMoofZcZRpgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-09-05 02:09:05
(21 hours ago)
Too many 404 requests [BY]
Web App Attack
🇩🇪
ISPLtd
2026-09-04 23:56:08
(23 hours ago)
Sep 4 20:56:07 35.197.177.76 TCP SPT=48162 DPT=80 SYN
Sep 4 20:56:07 35.197.177.76 TCP SPT=48160 D ...
show more
Sep 4 20:56:07 35.197.177.76 TCP SPT=48162 DPT=80 SYN
Sep 4 20:56:07 35.197.177.76 TCP SPT=48160 DPT=80 SYN
Sep 4 20:56:07 35.197.177.76 TCP SPT=48178 DPT=80 SYN
Sep
...
show less
DDoS Attack
🇩🇪
paissangroup
2026-09-04 22:44:59
(1 day ago)
Multiple WAF Violations
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-04 21:59:38
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
Anonymous
2026-09-04 21:29:28
(1 day ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:27:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:27:26.425667 2026] [security2:error] [pid 1637776:tid 1637776] [client 35.197.177.76:58524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.blacktieokc.com"] [uri "/public/.git/config"] [unique_id "aps3voUfBiwuvruLotxR_QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:56:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:56:34.891187 2026] [security2:error] [pid 22348:tid 22348] [client 35.197.177.76:50352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drbolen.com"] [uri "/backend/.git/config"] [unique_id "apswgrQ1hTzWC83SynIQKAAAAD8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 19:42:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.197.177.76 (76.177.197.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 15:42:19.990737 2026] [security2:error] [pid 11081:tid 11081] [client 35.197.177.76:54800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "insearchofgod.org"] [uri "/src/.git/config"] [unique_id "apsfGzqd24AeAXv6G40MEgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-04 13:48:56
(1 day ago)
cloudlinux2 fail2ban: 2026-09-04 15:44:06,572 fail2ban.filter [1594]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-09-04 15:44:06,572 fail2ban.filter [1594]: INFO [plesk-wordpress] Found 172.98.33.8 - 2026-09-04 15:44:04cloudlinux2 fail2ban: 2026-09-04 15:44:33,715 fail2ban.actions [1594]: NOTICE [plesk-modsecurity] Unban 34.175.12.69cloudlinux2 fail2ban: 2026-09-04 15:44:48,578 fail2ban.filter [1594]: INFO [plesk-wordpress] Found 91.193.232.78 - 2026-09-04 15:44:47cloudlinux2 fail2ban: 2026-09-04 15:44:47,626 fail2ban.filter [1594]: INFO [plesk-wordpress] Found 193.56.116.60 - 2026-09-04 15:44:47cloudlinux2 fail2ban: 2026-09-04 15:45:45,055 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 35.197.177.76 - 2026-09-04 15:45:45cloudlinux2 fail2ban: 2026-09-04 15:45:45,387 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 35.197.177.76 - 2026-09-04 15:45:45cloudlinux2 fail2ban: 2026-09-04 15:45:44,739 fail2ban.filter [1594]: INFO [plesk-modsecurity] Found 35.197.177.76 - 2026-09-04 15:45:44cloudlinux2 fail2ban: 2026
show less
Web App Attack
🇩🇪
webanyone
2026-09-04 10:02:46
(1 day ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack