🇺🇸
TPI-Abuse
2026-09-04 12:09:54
(10 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 08:09:46.887306 2026] [security2:error] [pid 15190:tid 15190] [client 35.221.186.242:52586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rblep.com"] [uri "/api/.git/config"] [unique_id "apq1ChaE3XGtDhjHLcrVoAAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:53:45
(26 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:53:36.887585 2026] [security2:error] [pid 22170:tid 22170] [client 35.221.186.242:57256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.magodarman.com"] [uri "/wordpress/.git/config"] [unique_id "apqxQE5Am7Zfrd5HAFMpYQAAAGc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
pm33
2026-09-04 09:50:32
(2 hours ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
🇳🇿
Antinson
2026-09-04 09:42:40
(2 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
🇩🇪
FD-IX
2026-09-04 07:18:00
(5 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:23:55
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:23:49.055291 2026] [security2:error] [pid 23815:tid 23839] [client 35.221.186.242:40338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wealthmanagementcommission.com.aafm.us"] [uri "/api/.git/config"] [unique_id "appV5Z_Q84fXus8IvUFwPwAAAVY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Marc
2026-09-04 05:17:47
(7 hours ago)
35.221.186.242 - - [04/Sep/2026:07:17:47 +0200] "GET /var/www/.git/config HTTP/1.1" 404 4618 "-" "cr ...
show more
35.221.186.242 - - [04/Sep/2026:07:17:47 +0200] "GET /var/www/.git/config HTTP/1.1" 404 4618 "-" "crusader-worker/1.0" 35.221.186.242 - - [04/Sep/2026:07:17:47 +0200] "GET /public/.git/config HTTP/1.1" 404 4616 "-" "crusader-worker/1.0" 35.221.186.242 - - [04/Sep/2026:07:17:47 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 4618 "-" "crusader-worker/1.0"
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 04:03:15
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:03:10.768226 2026] [security2:error] [pid 11157:tid 11157] [client 35.221.186.242:49706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "northfortworthalliance.com"] [uri "/htdocs/.git/config"] [unique_id "appC_p4nUn_DEZ-UMo3zOQAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-04 00:29:45
(11 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-03 22:01:18
(14 hours ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
Anonymous
2026-09-03 18:52:15
(17 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-03 16:13:58
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 12:13:53.956626 2026] [security2:error] [pid 25946:tid 25946] [client 35.221.186.242:33396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xunhung.tonylai.com"] [uri "/site/.git/config"] [unique_id "apmcwSxZnUCBm1RV0EzVGAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-03 15:39:37
(20 hours ago)
Multiple WAF Violations
Web App Attack
🇬🇧
consul.to
2026-09-03 13:58:19
(22 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 13:45:03
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.186.242 (242.186.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 09:44:56.898888 2026] [security2:error] [pid 28588:tid 28588] [client 35.221.186.242:52650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "testo.bwill.dev"] [uri "/www/.git/config"] [unique_id "apl52D-5eHQJKV0JZWxSbAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack