🇺🇸
TPI-Abuse
2026-09-10 06:39:23
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 02:39:16.489357 2026] [security2:error] [pid 19994:tid 20014] [client 35.220.168.215:43682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "toniskitchenlakegregory.com"] [uri "/.git/config"] [unique_id "aqJQlAt0UfY72TV_LBPDWQAAAJI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 04:04:00
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 00:03:56.181583 2026] [security2:error] [pid 9030:tid 9030] [client 35.220.168.215:36352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tech-support.biz"] [uri "/.git/config"] [unique_id "aqIsLDjPulSlWGrdAGB55wAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-10 03:34:02
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 23:33:57.157280 2026] [security2:error] [pid 20087:tid 20087] [client 35.220.168.215:54204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tech-servusa.com"] [uri "/.git/config"] [unique_id "aqIlJSc5hfxEOFhKNhyx7QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-09 22:06:14
(9 hours ago)
Trying to access config files
Web App Attack
🇵🇱
Budyn
2026-09-09 21:26:59
(10 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: admin.astropot.online | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
🇩🇪
paissangroup
2026-09-09 19:17:02
(12 hours ago)
Multiple WAF Violations
Web App Attack
🇧🇪
cmbplf
2026-09-09 18:59:17
(13 hours ago)
462 requests with url.path *phpinfo.php
Brute-Force
Bad Web Bot
🇳🇱
Site.eu
2026-09-09 17:01:40
(14 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-09 16:36:16
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 12:36:12.286313 2026] [security2:error] [pid 29678:tid 29678] [client 35.220.168.215:41166] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maerynray.com"] [uri "/.git/config"] [unique_id "aqGK_Fy4WVYDMikM-YqBDgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-09 15:17:48
(16 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 15:12:18
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.220.168.215 (215.168.220.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 11:12:10.318041 2026] [security2:error] [pid 1616041:tid 1616041] [client 35.220.168.215:49610] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "histbase.com"] [uri "/.git/config"] [unique_id "aqF3SjZU3vwejMTS6ir5LAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Octopuce
2026-09-09 14:49:04
(17 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
Anonymous
2026-09-09 14:22:13
(17 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
2026-09-09 11:47:30
(20 hours ago)
(mod_security) mod_security triggered on hostname [redacted])
SQL Injection
🇮🇹
CoreTech srl
2026-09-09 10:28:56
(21 hours ago)
cloudlinux2 fail2ban: 2026-09-09 12:24:27,574 fail2ban.actions [1892]: NOTICE [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-09 12:24:27,574 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 34.97.25.174cloudlinux2 fail2ban: 2026-09-09 12:25:00,641 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 49.37.101.210 - 2026-09-09 12:25:00cloudlinux2 fail2ban: 2026-09-09 12:24:52,216 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 34.51.142.165cloudlinux2 fail2ban: 2026-09-09 12:25:00,839 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Ban 49.37.101.210cloudlinux2 fail2ban: 2026-09-09 12:25:00,846 fail2ban.filter [1892]: INFO [recidive] Found 49.37.101.210 - 2026-09-09 12:25:00cloudlinux2 fail2ban: 2026-09-09 12:26:36,843 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 45.130.83.213 - 2026-09-09 12:26:35cloudlinux2 fail2ban: 2026-09-09 12:26:40,692 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 35.220.168.215 - 2026-09-09 12:26:40cloudlinux2 fail2ban: 2026-09-09 12:26:40,884 fail2ban.filter [189
show less
Web App Attack