🇫🇷
Octopuce
2026-09-09 22:54:02
(2 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 22:52:58
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 18:52:50.762520 2026] [security2:error] [pid 15508:tid 15508] [client 35.199.190.60:46624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testing.ironsightsarmory.com"] [uri "/.git/config"] [unique_id "aqHjQnrhUb7zEw6HTTqs0wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-09 21:55:01
(3 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
Anonymous
2026-09-09 20:45:02
(5 hours ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-09 20:31:36
(5 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 20:01:31
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 16:01:23.337433 2026] [security2:error] [pid 32456:tid 32456] [client 35.199.190.60:57650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solidthought.com"] [uri "/.git/config"] [unique_id "aqG7Ex3qQs21Pm6W082fqQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 17:50:17
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 13:50:09.428114 2026] [security2:error] [pid 9185:tid 9185] [client 35.199.190.60:51700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pc-rack.com"] [uri "/.git/config"] [unique_id "aqGcUZd9k9yRdVRoUD_argAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-09 17:20:03
(8 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-09 16:23:03
(9 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇩🇪
hbrks
2026-09-09 12:29:37
(13 hours ago)
200 attack(s) detected, such as these: {"event":"web_block","ip":"35.199.190.60","host":"pbx.onl","r ...
show more
200 attack(s) detected, such as these: {"event":"web_block","ip":"35.199.190.60","host":"pbx.onl","request":"GET /notifications/.env HTTP/1.1","user_agent":"","reason":"Status-404","timestamp":"2026-09-09T12:29:37 00:00","logentry":"pbx.onl 35.199.190.60 - - [09/Sep/2026:14:29:37 0200] \"GET /notifications/.env HTTP/1.1\" 404 555 \"-\" \"Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" \"-\""} * Report Details *: https://p4u.xyz/SA95GOPD3A6/1* IP Details *: https://p4u.xyz/SA95GOPD3A6/2
show less
Web Spam
Hacking
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-09 10:42:23
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.190.60 (60.190.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 06:42:19.062833 2026] [security2:error] [pid 1237663:tid 1237663] [client 35.199.190.60:59070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lobibilisim.com"] [uri "/.git/config"] [unique_id "aqE4C6jYB8abiA41EmQyPwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack