๐บ๐ธ
TPI-Abuse
2026-10-08 01:59:15
(16 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 21:59:12.134091 2026] [security2:error] [pid 16310:tid 16310] [client 35.212.138.206:46418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kaiyadunn.com"] [uri "/.git/config"] [unique_id "asb48BuSIRTh4GOEjrBQVwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
akasolutions.de
2026-10-07 22:41:05
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.212.138.206 (US/United States/206.13 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.212.138.206 (US/United States/206.138.212.35.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
homeshowdomain.nl
2026-10-07 22:00:00
(4 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-10-06.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 21:31:15
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 17:31:10.112556 2026] [security2:error] [pid 18620:tid 18620] [client 35.212.138.206:54660] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kairoslogammakmur.com"] [uri "/.git/config"] [unique_id "asa6Hh3Janm8NNe4pYSUGAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-10-07 21:04:03
(5 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 27
Exploited Host
Web App Attack
๐ณ๐ฑ
Site.eu
2026-10-07 21:02:58
(5 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฎ๐ณ
dineshskt4all
2026-10-07 13:10:07
(13 hours ago)
[Wed Oct 07 13:10:04.207135 2026] [proxy_fcgi:error] [pid 2372288:tid 127320664823488] [client 35.21 ...
show more
[Wed Oct 07 13:10:04.207135 2026] [proxy_fcgi:error] [pid 2372288:tid 127320664823488] [client 35.212.138.206:0] AH01071: Got error 'Primary script unknown'
...
show less
Brute-Force
Anonymous
2026-10-07 12:58:39
(13 hours ago)
$f2bV_matches
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-10-07 09:34:44
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:34:39.361672 2026] [security2:error] [pid 31559:tid 31559] [client 35.212.138.206:47248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kaibeth.com"] [uri "/.git/config"] [unique_id "asYSL2qo1ApSBPLrKS8lxAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-06 21:59:54
(1 day ago)
Auto-ban: >3000 req/min op 2026-10-06
Web App Attack
SSH
Hacking
๐ณ๐ฑ
Site.eu
2026-10-06 17:47:15
(1 day ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
dot.mg
2026-10-06 17:43:14
(1 day ago)
Scan of vulnerable files
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-10-05 08:38:05
(2 days ago)
(modsec_attack) srv201 ModSecurity attack 35.212.138.206 (US/United States/206.138.212.35.bc.googleu ...
show more
(modsec_attack) srv201 ModSecurity attack 35.212.138.206 (US/United States/206.138.212.35.bc.googleusercontent.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-05 07:49:41
(2 days ago)
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more
[ti-01ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.212.138.206 - - \[05/Oct/2026:09:49:28 +0200\] "GET /.git/config HTTP/1.1" 404 39487 "-" "Mozilla/5.0 \(Windows NT 10.0\; Win64\; x64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 07:46:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.212.138.206 (206.138.212.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 03:46:30.930223 2026] [security2:error] [pid 6293:tid 6372] [client 35.212.138.206:43728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "htpsocal.com"] [uri "/.git/config"] [unique_id "asNV1jPrEyokjB_rH3DVpgAAAdM"]
show less
Brute-Force
Bad Web Bot
Web App Attack