🇺🇸
TPI-Abuse
2026-09-07 01:16:26
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 21:16:19.079047 2026] [security2:error] [pid 25857:tid 25857] [client 35.221.171.241:54846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnson.thenewplace.org"] [uri "/.git/config"] [unique_id "ap4QY2wXOxcyqYYWHUNckQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mw
2026-09-07 00:00:50
(3 hours ago)
GET /.env HTTP/1.1
Web App Attack
🇫🇷
dynamix
2026-09-06 23:29:03
(3 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇪
netclix.gr
2026-09-06 23:13:28
(3 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.221.171.241 (TW/Taiwan/241.171.221.3 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.221.171.241 (TW/Taiwan/241.171.221.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-06 22:46:55
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:46:49.596499 2026] [security2:error] [pid 11130:tid 11130] [client 35.221.171.241:59924] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnlittlehorn.littlehorndesign.com"] [uri "/.git/config"] [unique_id "ap3tWSgtd9XGlW9MVyE8pgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 22:04:40
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:04:37.032612 2026] [security2:error] [pid 13674:tid 13674] [client 35.221.171.241:33738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnhansonmemorial.org.coolingsprings.org"] [uri "/.git/config"] [unique_id "ap3jdeSZu9sVEYy-8x7IbgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-06 22:00:14
(5 hours ago)
Auto-ban: >3000 req/min op 2026-09-06
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-06 21:23:05
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 17:22:58.533700 2026] [security2:error] [pid 23580:tid 23580] [client 35.221.171.241:39212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnedwardsconsulting.com.danged.com"] [uri "/.git/config"] [unique_id "ap3ZsjGZt_UfcqRS3QEkTgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-06 21:18:39
(5 hours ago)
Excessive multi-domain requests
Brute-Force
🇳🇱
WeCloudit-Anti-Abuse
2026-09-06 21:05:40
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-06 20:57:22
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 16:57:18.468976 2026] [security2:error] [pid 2571:tid 2571] [client 35.221.171.241:38310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johncyphers.com"] [uri "/.git/config"] [unique_id "ap3TrsePIlqnUC2WS0JzzQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 20:02:56
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.171.241 (241.171.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 16:02:50.214342 2026] [security2:error] [pid 12979:tid 12979] [client 35.221.171.241:60634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnatuttle.com.player-care.com"] [uri "/.git/config"] [unique_id "ap3G6nsBCkOCkbeOoxnEXQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-06 19:07:46
(7 hours ago)
19.953 requests in 1 hour (1mo3w5d)
Brute-Force
Bad Web Bot
🇩🇪
ghostwarriors
2026-09-06 18:50:08
(8 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇨🇭
zynex
2026-09-06 18:49:04
(8 hours ago)
URL Probing: /public/.env
Web App Attack