๐ฎ๐ฉ
Burayot
2026-09-11 17:23:27
(1 hour ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 35.199.105.17 (BR/Brazil/17.105.199. ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 35.199.105.17 (BR/Brazil/17.105.199.35.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
๐ซ๐ท
masterguru
2026-09-11 16:42:15
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 13:53:05
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 09:52:57.538245 2026] [security2:error] [pid 7556:tid 7556] [client 35.199.105.17:52272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.horizonmusicgroup.independentmusicconference.com"] [uri "/.git/config"] [unique_id "aqQHuViI5NbYs4ya6wFBFgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
iulianh
2026-09-11 12:44:45
(6 hours ago)
80,443
Brute-Force
SSH
๐ฉ๐ช
todix
2026-09-11 12:33:12
(6 hours ago)
WebAttack or semilar from 35.199.105.17
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-11 11:50:01
(6 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-09-11 11:28:18
(7 hours ago)
[FriSep1113:28:14.8927862026][security2:error][pid1718984:tid1719006][client35.199.105.17:0]ModSecur ...
show more
[FriSep1113:28:14.8927862026][security2:error][pid1718984:tid1719006][client35.199.105.17:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.hopitalprovidence.org.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"aqPlziSnjyouiNW5jdZ8qAAAAAg\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-09-11 08:03:21
(10 hours ago)
20.527 requests in 1 hour (3mos1w6d)
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-11 08:00:44
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:00:39.794106 2026] [security2:error] [pid 30125:tid 30125] [client 35.199.105.17:47798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hooks-n-hearts.michaelsabbey.org"] [uri "/.git/config"] [unique_id "aqO1J4hOgM2cvv1FHWVdqQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 05:50:15
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 01:50:07.223469 2026] [security2:error] [pid 4269:tid 4269] [client 35.199.105.17:55408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.honkouji.ichi51e.net"] [uri "/.git/config"] [unique_id "aqOWj48_4oJqExpZuQ26QAAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-11 05:38:10
(13 hours ago)
Scanning for web/db/file exploits on www.honigoptiek.nl
SQL Injection
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-11 04:49:41
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.105.17 (17.105.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 00:49:37.077854 2026] [security2:error] [pid 23860:tid 23868] [client 35.199.105.17:40596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hongkongstockexchange.org.aafm.us"] [uri "/.git/config"] [unique_id "aqOIYd3fKC0AtVreNQVsNwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-11 04:05:22
(14 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐ณ๐ฟ
Antinson
2026-09-11 01:26:15
(17 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ฟ๐ฆ
conure.sh
2026-09-11 00:57:52
(17 hours ago)
csagent: score 21.4: 404 noise floor x6, secrets grab x2; 1 domain(s) in 2s
Web App Attack