🇫🇮
paissangroup
2026-09-15 22:49:19
(11 minutes ago)
Multiple WAF Violations
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-15 22:00:24
(1 hour ago)
Auto-ban: >3000 req/min op 2026-09-15
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-15 21:47:49
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 17:47:41.616672 2026] [security2:error] [pid 18955:tid 18955] [client 35.204.23.175:48306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.icl1.org"] [uri "/.git/config"] [unique_id "aqm8_drxr0pes-ZcX__wuQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-15 21:24:24
(1 hour ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇫🇷
dynamix
2026-09-15 21:10:54
(1 hour ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 19:11:44
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 15:11:36.989035 2026] [security2:error] [pid 31711:tid 31735] [client 35.204.23.175:45068] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.icemakerparts.com.faimreps.com"] [uri "/.git/config"] [unique_id "aqmYaBlZ4tW07tAjHdiL8AAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 18:26:31
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:26:23.318493 2026] [security2:error] [pid 12925:tid 12961] [client 35.204.23.175:54254] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.icecc.com.aafm.us"] [uri "/.git/config"] [unique_id "aqmNz2ueqVlvDI_r4FmyQgAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 18:03:05
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 14:02:57.746210 2026] [security2:error] [pid 27302:tid 27302] [client 35.204.23.175:57670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ice.premaindustrial.com"] [uri "/.git/config"] [unique_id "aqmIUXY8kZTeDF7IJTFZcwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
kosada.com
2026-09-15 15:59:32
(7 hours ago)
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla ...
show more
Repeated exploit attempts, for example: /.env.staging /.env (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36")
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 15:58:08
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 11:58:05.242254 2026] [security2:error] [pid 8456:tid 8456] [client 35.204.23.175:53324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.icafe.bz.shafie.net"] [uri "/.git/config"] [unique_id "aqlrDR-BmDlEkCNWOJtwagAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 15:40:07
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.204.23.175 (175.23.204.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 11:40:02.807369 2026] [security2:error] [pid 1178622:tid 1178622] [client 35.204.23.175:52428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ic1.ic1.biz"] [uri "/.git/config"] [unique_id "aqlm0inI8s9kQ5lrBEn9ZwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-15 15:35:03
(7 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-15 15:24:51
(7 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇩🇪
Hazzard
2026-09-15 15:19:25
(7 hours ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
🇳🇱
Site.eu
2026-09-15 15:17:05
(7 hours ago)
Excessive 404/403 errors
Brute-Force