๐ณ๐ฑ
e.fierstra
2026-09-24 08:37:30
(1 week ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ช๐ธ
robotstxt
2026-09-24 05:30:21
(1 week ago)
35.220.160.197 - - [24/Sep/2026:05:30:08 +0000] "GET /site/.git/config HTTP/1.1" 403 47831 "-" "crus ...
show more
35.220.160.197 - - [24/Sep/2026:05:30:08 +0000] "GET /site/.git/config HTTP/1.1" 403 47831 "-" "crusader-worker/1.0" "-" edge="35.220.160.197"
35.220.160.197 - - [24/Sep/2026:05:30:08 +0000] "GET /www/.git/config HTTP/1.1" 403 47839 "-" "crusader-worker/1.0" "-" edge="35.220.160.197"
35.220.160.197 - - [24/Sep/2026:05:30:08 +0000] "GET /api/.git/config HTTP/1.1" 403 47839 "-" "crusader-worker/1.0" "-" edge="35.220.160.197"
35.220.160.197 - - [24/Sep/2026:05:30:08 +0000] "GET /.git/config HTTP/1.1" 403 47831 "-" "crusader-worker/1.0" "-" edge="35.220.160.197"
35.220.160.197 - - [24/Sep/2026:05:30:08 +0000] "GET /src/.git/config HTTP/1.1" 403 47831 "-" "crusader-worker/1.0" "-" edge="35.220.160.197"
...
show less
Web App Attack
๐ฌ๐ง
consul.to
2026-09-24 05:12:31
(1 week ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 04:26:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 00:26:44.262124 2026] [security2:error] [pid 23286:tid 23286] [client 35.220.160.197:59524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "crcponcha.com"] [uri "/var/www/.git/config"] [unique_id "arSmhJekUYeN-Ba9p4S26gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 03:41:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 23:41:38.876130 2026] [security2:error] [pid 9738:tid 9738] [client 35.220.160.197:49752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mumawvickers.com"] [uri "/backend/.git/config"] [unique_id "arSb8t7hptSYAVoS9y2vfQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-24 03:05:40
(1 week ago)
csagent: score 20.0: secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐ฎ๐น
VHosting
2026-09-24 01:05:06
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-23 23:57:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 19:57:27.251006 2026] [security2:error] [pid 31534:tid 31534] [client 35.220.160.197:37842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.abdulhameeds.art"] [uri "/html/.git/config"] [unique_id "arRnZy6Mipar3Sb83bJ1UgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-23 22:00:36
(1 week ago)
Auto-ban: >3000 req/min op 2026-09-23
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-23 17:59:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 13:59:33.514944 2026] [security2:error] [pid 17277:tid 17277] [client 35.220.160.197:39472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cbrhualpen.cl"] [uri "/www/.git/config"] [unique_id "arQThUwFqqgUlpGRL8kx7AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
TechnoSolutions CL
2026-09-23 14:28:32
(1 week ago)
35.220.160.197 - - [23/Sep/2026:14:28:31 +0000] "GET /public/.git/config HTTP/1.1" 444 0 "-" "crusad ...
show more
35.220.160.197 - - [23/Sep/2026:14:28:31 +0000] "GET /public/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
35.220.160.197 - - [23/Sep/2026:14:28:31 +0000] "GET /htdocs/.git/config HTTP/1.1" 444 0 "-" "crusader-worker/1.0"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-23 12:25:01
(1 week ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-23 11:42:13
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-23 06:58:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.160.197 (197.160.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 23 02:58:44.135467 2026] [security2:error] [pid 14933:tid 14967] [client 35.220.160.197:33792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.priyom.us"] [uri "/var/www/.git/config"] [unique_id "arN4pJNaUnGEb90qBkjGJQAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
0x44
2026-09-23 06:38:36
(1 week ago)
TCP SYN Discovery - Flooding
DDoS Attack