๐ณ๐ฑ
Site.eu
2026-08-31 17:25:23
(3 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฉ๐ช
FD-IX
2026-08-31 16:20:50
(4 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 15:49:16
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:49:12.069147 2026] [security2:error] [pid 31573:tid 31573] [client 35.199.107.190:47612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heaven.avmcyber.com"] [uri "/.git/config"] [unique_id "apWieOzcMhji3CuFIdy9wAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 15:12:00
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:11:52.199575 2026] [security2:error] [pid 11219:tid 11219] [client 35.199.107.190:47246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.heatherbargeron.com.michaelholdengc.com"] [uri "/.git/config"] [unique_id "apWZuMcgl3lOJENBST4wiQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
taivas.nl
2026-08-31 13:02:18
(7 hours ago)
Bad_requests
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-31 12:48:20
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:48:14.496327 2026] [security2:error] [pid 21494:tid 21494] [client 35.199.107.190:58906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.healthy4youllc.starrmail.net"] [uri "/.git/config"] [unique_id "apV4DmWyzd8qvjzHuwwf3AAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 12:24:06
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 08:23:59.122257 2026] [security2:error] [pid 30043:tid 30043] [client 35.199.107.190:49082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.healthpointphysicians.co.helpkccare.org"] [uri "/.git/config"] [unique_id "apVyX-cbZjVl4Q-oIl0hGAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-31 11:35:31
(9 hours ago)
Try to access /.git/config
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-31 10:08:02
(10 hours ago)
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,ice02,wa01,wa02 ...
show more
Fail2Ban - [WAF]ModSecurity OWASP CRS rule violation on nginx-modsecurity ... [ice01,ice02,wa01,wa02]
show less
Hacking
SQL Injection
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 09:39:35
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:39:27.949442 2026] [security2:error] [pid 16343:tid 16343] [client 35.199.107.190:39954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.he.handyrehab.com"] [uri "/.git/config"] [unique_id "apVLz3ZGFxuC6JmvGulk_QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-31 09:05:25
(11 hours ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐ฉ๐ช
4server
2026-08-31 08:50:08
(11 hours ago)
[MonAug3110:50:04.7275232026][security2:error][pid2466728:tid2466821][client35.199.107.190:0]ModSecu ...
show more
[MonAug3110:50:04.7275232026][security2:error][pid2466728:tid2466821][client35.199.107.190:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.hdcadvisory.ch.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"apVAPBEP23xW2cMf0ide9AAAAQA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:33:00
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:32:56.595587 2026] [security2:error] [pid 3720756:tid 3720800] [client 35.199.107.190:38242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hcvideo.gryphix.com"] [uri "/.git/config"] [unique_id "apU8OCXDYD09BveEjkixTAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-08-31 08:05:03
(12 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 06:33:31
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.107.190 (190.107.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:33:27.234466 2026] [security2:error] [pid 15725:tid 15725] [client 35.199.107.190:57214] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hbc.kanata.ws"] [uri "/.git/config"] [unique_id "apUgNwIeXxHnlL1Cwb52BwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack