๐บ๐ธ
TPI-Abuse
2026-10-07 12:06:26
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.211.109.246 (246.109.211.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.211.109.246 (246.109.211.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 08:06:22.452541 2026] [security2:error] [pid 1293:tid 1293] [client 35.211.109.246:33466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "i-slim.net"] [uri "/.git/config"] [unique_id "asY1vpLQ7hLcegNCrzIjBAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-07 11:30:44
(4 hours ago)
[da.kdns.gr] httpd-config-scan: sites=www.i-pad.gr; logs=/var/log/httpd/domains/i-pad.gr.log; sample ...
show more
[da.kdns.gr] httpd-config-scan: sites=www.i-pad.gr; logs=/var/log/httpd/domains/i-pad.gr.log; samples=/.git/config | /.env | /.env.local
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-07 11:22:07
(4 hours ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-10-07 11:16:03
(4 hours ago)
Web probing (180 hits in 24h) on i-mv.nl: sensitive-path scans and/or 404 bursts. Reported by CRMON.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 11:03:49
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.211.109.246 (246.109.211.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.211.109.246 (246.109.211.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 07:03:43.145456 2026] [security2:error] [pid 7964:tid 8066] [client 35.211.109.246:42536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "i-masmx.com"] [uri "/.git/config"] [unique_id "asYnDxdDG6o00-C2DivggAAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
bmino.pl
2026-10-07 10:27:53
(5 hours ago)
Autoban IP(2): 35.211.109.246 - Hostname: Google Ireland Limited - City: North Charleston - Country: ...
show more
Autoban IP(2): 35.211.109.246 - Hostname: Google Ireland Limited - City: North Charleston - Country: United States - Organization: Google Cloud (us-east1) - Reason: GET /.git/config HTTP/1.1
show less
Web App Attack
๐บ๐ธ
mnsf
2026-10-07 10:05:22
(5 hours ago)
Too many Status 40X (21)
Brute-Force
Web App Attack
๐ฉ๐ช
verlon
2026-10-05 06:39:33
(2 days ago)
2026/10/05 08:39:25 [error] 177962#177962: *260533 access forbidden by rule, client: 35.211.109.246, ...
show more
2026/10/05 08:39:25 [error] 177962#177962: *260533 access forbidden by rule, client: 35.211.109.246, server: gcomfort.hu, request: "GET /.git/config HTTP/2.0", host: "gcomfort.hu"
2026/10/05 08:39:29 [error] 177962#177962: *260533 access forbidden by rule, client: 35.211.109.246, server: gcomfort.hu, request: "GET /.env.bak HTTP/2.0", host: "gcomfort.hu"
2026/10/05 08:39:30 [error] 177962#177962: *260533 access forbidden by rule, client: 35.211.109.246, server: gcomfort.hu, request: "GET /.env.save HTTP/2.0", host: "gcomfort.hu"
...
show less
Hacking
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-10-05 06:36:51
(2 days ago)
Try to access /.git/config
Web App Attack
Anonymous
2026-10-05 06:33:34
(2 days ago)
Automatically blocked after 212 security events. Observed sensitive configuration-file probes. Sourc ...
show more
Automatically blocked after 212 security events. Observed sensitive configuration-file probes. Source: Cloudflare security controls.
show less
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 06:32:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.211.109.246 (246.109.211.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.211.109.246 (246.109.211.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 02:32:16.329535 2026] [security2:error] [pid 10031:tid 10031] [client 35.211.109.246:59682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gcmmortgage.com"] [uri "/.git/config"] [unique_id "asNEcFO3n_Lbo53mBKm9ogAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
aks4226
2026-10-05 06:00:35
(2 days ago)
Bot search, attacking common web applications.
Web App Attack
Anonymous
2026-10-05 05:24:15
(2 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack