🇺🇸
TPI-Abuse
2026-09-08 01:16:02
(49 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 21:15:56.670284 2026] [security2:error] [pid 2295:tid 2295] [client 35.221.195.93:40012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.join.oxfordgliding.com"] [uri "/.git/config"] [unique_id "ap9hzEr4ZKx79hNsVLf-pQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mw
2026-09-08 00:01:46
(2 hours ago)
GET /.env HTTP/1.1
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 22:59:02
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 18:58:56.476395 2026] [security2:error] [pid 1661:tid 1661] [client 35.221.195.93:56628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnson.thenewplace.org"] [uri "/.git/config"] [unique_id "ap9BsHwtCkINUfQs5a1i-AAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
netclix.gr
2026-09-07 21:04:22
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.221.195.93 (TW/Taiwan/93.195.221.35. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.221.195.93 (TW/Taiwan/93.195.221.35.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
🇺🇸
TPI-Abuse
2026-09-07 20:37:36
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:37:28.658983 2026] [security2:error] [pid 2082:tid 2082] [client 35.221.195.93:54400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnlittlehorn.littlehorndesign.com"] [uri "/.git/config"] [unique_id "ap8giEl6DB3nD99JW_CCAwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:54:32
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:54:25.090178 2026] [security2:error] [pid 13474:tid 13474] [client 35.221.195.93:36902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnhansonmemorial.org.coolingsprings.org"] [uri "/.git/config"] [unique_id "ap8Wccyc4APJe6biAVTlrQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:22:22
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:22:15.886333 2026] [security2:error] [pid 27434:tid 27434] [client 35.221.195.93:51480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnedwardsconsulting.com.danged.com"] [uri "/.git/config"] [unique_id "ap8O5zKSzhUL2m4ARTGqWQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-07 19:19:51
(6 hours ago)
Excessive 404/403 errors
Brute-Force
🇺🇸
TPI-Abuse
2026-09-07 18:22:16
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.221.195.93 (93.195.221.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:22:10.103192 2026] [security2:error] [pid 3418:tid 3418] [client 35.221.195.93:40008] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.johnatuttle.com.player-care.com"] [uri "/.git/config"] [unique_id "ap8A0oEvpinNBZqBFXPZMAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-07 17:35:02
(8 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇩🇪
ghostwarriors
2026-09-07 17:20:04
(8 hours ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇨🇭
zynex
2026-09-07 17:12:19
(8 hours ago)
URL Probing: /.env
Web App Attack
🇩🇪
yitzhaq
2026-09-07 17:09:28
(8 hours ago)
35.221.195.93 - - [07/Sep/2026:19:09:22 +0200] "POST / HTTP/1.1" 200 1139 "-" "Mozilla/5.0 (Windows ...
show more
35.221.195.93 - - [07/Sep/2026:19:09:22 +0200] "POST / HTTP/1.1" 200 1139 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.221.195.93 - - [07/Sep/2026:19:09:23 +0200] "GET /.git/config HTTP/1.1" 403 522 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.221.195.93 - - [07/Sep/2026:19:09:23 +0200] "POST / HTTP/1.1" 200 1139 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.221.195.93 - - [07/Sep/2026:19:09:23 +0200] "GET /.env HTTP/1.1" 404 519 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.221.195.93 - - [07/Sep/2026:19:09:23 +0200] "GET /.env.local HTTP/1.1" 404 519 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.221.195.93 - - [07
show less
Web App Attack
Hacking
🇳🇱
maxxsense
2026-09-07 17:00:13
(9 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.221.195.93 (TW/Taiwan/93.195.221.35. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.221.195.93 (TW/Taiwan/93.195.221.35.bc.googleusercontent.com)
show less
SQL Injection
🇧🇪
taivas.nl
2026-09-07 16:32:12
(9 hours ago)
Bad_requests
Bad Web Bot