๐ฉ๐ช
Blexyel
2026-09-03 01:38:21
(17 minutes ago)
35.228.199.52 - - [03/Sep/2026:03:38:21 +0200] "GET /src/.git/config HTTP/1.1" 404 120 "-" "crusader ...
show more
35.228.199.52 - - [03/Sep/2026:03:38:21 +0200] "GET /src/.git/config HTTP/1.1" 404 120 "-" "crusader-worker/1.0"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 01:21:49
(33 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:21:42.487118 2026] [security2:error] [pid 25483:tid 25483] [client 35.228.199.52:46720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.triangleanchor.com"] [uri "/wordpress/.git/config"] [unique_id "apjLptAeHIUkY-vf1p0tWAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฟ
Prcek
2026-09-03 00:34:21
(1 hour ago)
PortScan:HOST=35.228.199.52,DPORTS=443
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-02 23:09:46
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 19:09:38.055680 2026] [security2:error] [pid 13325:tid 13325] [client 35.228.199.52:33998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hertzan.com"] [uri "/site/.git/config"] [unique_id "apissiGEc-02VXlrw0x1wwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 22:00:44
(3 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-01.
show less
Web App Attack
SSH
Hacking
๐ธ๐ช
vaia.cloud
2026-09-02 19:15:02
(6 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 14:31:55
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:31:51.028887 2026] [security2:error] [pid 100867:tid 101030] [client 35.228.199.52:50468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kettlehill.net"] [uri "/public/.git/config"] [unique_id "apgzVw5_ooKZQ_Yzn9emmgAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
retrokitty.net
2026-09-02 06:54:42
(19 hours ago)
35.228.199.52 - - [02/Sep/2026:06:54:37 +0000] "GET /.git/config HTTP/1.1" 503 20800 "-" "crusader-w ...
show more
35.228.199.52 - - [02/Sep/2026:06:54:37 +0000] "GET /.git/config HTTP/1.1" 503 20800 "-" "crusader-worker/1.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:17:21
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:17:13.358838 2026] [security2:error] [pid 10569:tid 10569] [client 35.228.199.52:36162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bestanddonovan.com"] [uri "/html/.git/config"] [unique_id "ape_abDx-mnYwsh-a2Hp1gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:54:04
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (52.199.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:53:58.535500 2026] [security2:error] [pid 20755:tid 20755] [client 35.228.199.52:36630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.camouflagebikinis.com"] [uri "/backend/.git/config"] [unique_id "ape59rtDW_OutY6plZy_-gAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-09-02 05:50:14
(20 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 05:49:44
(20 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.228.199.52 (FI/Finland/52.199.228. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.228.199.52 (FI/Finland/52.199.228.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 05:33:55
(20 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
e.fierstra
2026-09-02 05:21:35
(20 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
SysAdmin Dylan
2026-09-02 04:56:01
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (FI/Finland/52.199.228.35.bc.goog ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.199.52 (FI/Finland/52.199.228.35.bc.googleusercontent.com): 10 in the last 3600 secs
show less
Brute-Force