๐บ๐ธ
TPI-Abuse
2026-09-03 22:11:37
(37 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:11:33.489061 2026] [security2:error] [pid 6441:tid 6441] [client 35.222.197.208:14172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ecrecorp.com"] [uri "/.git/config"] [unique_id "apnwlULYh4xomScy2w7oWAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-03 22:03:57
(45 minutes ago)
cloudlinux2 fail2ban: 2026-09-03 23:58:45,088 fail2ban.filter [1472]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-03 23:58:45,088 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.222.197.208 - 2026-09-03 23:58:45cloudlinux2 fail2ban: 2026-09-04 00:00:07,366 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Unban 136.107.221.171cloudlinux2 fail2ban: 2026-09-04 00:00:27,285 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 136.65.207.1 - 2026-09-04 00:00:27cloudlinux2 fail2ban: 2026-09-04 00:00:36,727 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.146.184.54 - 2026-09-04 00:00:36cloudlinux2 fail2ban: 2026-09-04 00:00:36,672 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.146.184.54 - 2026-09-04 00:00:36cloudlinux2 fail2ban: 2026-09-04 00:00:36,697 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.146.184.54 - 2026-09-04 00:00:36cloudlinux2 fail2ban: 2026-09-04 00:00:36,659 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.146.184.54 - 2026-09-04 00:00:36cloudlinux2 fai
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-03 21:48:16
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 17:48:09.797185 2026] [security2:error] [pid 20818:tid 20818] [client 35.222.197.208:3798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greencornokies.org"] [uri "/.git/config"] [unique_id "apnrGVXFliEpxmwK1eHetgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-03 21:24:03
(1 hour ago)
[04/Sep/2026:00:24:02 +0300] -- 35.222.197.208 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[04/Sep/2026:00:24:02 +0300] -- 35.222.197.208 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 21:03:42
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 17:03:37.419831 2026] [security2:error] [pid 26965:tid 26965] [client 35.222.197.208:28968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ditchthediaper.com"] [uri "/.git/config"] [unique_id "apngqR_xeu407jK15rYb-wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 20:15:55
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:15:49.019523 2026] [security2:error] [pid 17468:tid 17468] [client 35.222.197.208:35188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eastsidenotary.com"] [uri "/.git/config"] [unique_id "apnVdRP1B21t49kk4Osw7QAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 19:45:11
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:45:03.519911 2026] [security2:error] [pid 10061:tid 10061] [client 35.222.197.208:31020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fromthehandofgodministry.org"] [uri "/.git/config"] [unique_id "apnOP48ElCovJSPX6LVELQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-09-03 19:07:02
(3 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 18:43:59
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:43:52.224542 2026] [security2:error] [pid 26393:tid 26393] [client 35.222.197.208:54456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gesegurospma.com"] [uri "/.git/config"] [unique_id "apm_6OIYtjptExdnOx8ZxwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 18:15:39
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:15:32.643292 2026] [security2:error] [pid 4902:tid 4902] [client 35.222.197.208:54468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dyslexiaspecialistsonline.com"] [uri "/.git/config"] [unique_id "apm5RNgYjQ473_4WZ8f4ZwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 18:12:03
(4 hours ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
Anonymous
2026-09-03 17:39:51
(5 hours ago)
[server.tmg.gr] httpd-config-scan: sites=www.cardioathena2021.gr,www.cardioathena2022.gr,www.cardioa ...
show more
[server.tmg.gr] httpd-config-scan: sites=www.cardioathena2021.gr,www.cardioathena2022.gr,www.cardioathena2023.gr,www.cardioathena2024.gr; logs=/var/log/httpd/domains/cardioathena2021.gr.log,/var/log/httpd/domains/cardioathena2022.gr.log,/var/log/httpd/domains/cardioathena2023.gr.log; samples=/.git/config
show less
Hacking
Web App Attack
Anonymous
2026-09-03 17:35:02
(5 hours ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-03 17:18:20
(5 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 17:18:08
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.222.197.208 (208.197.222.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 13:18:05.114036 2026] [security2:error] [pid 19906:tid 19906] [client 35.222.197.208:44086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gpusa-ca.com"] [uri "/.git/config"] [unique_id "apmrzb5lDxrK_4rvHU9dwQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack