Anonymous
2026-06-15 02:05:15
(39 minutes ago)
WAF repeated trigger detected by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 01:45:33
(58 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:45:28.142799 2026] [security2:error] [pid 13414:tid 13414] [client 35.228.40.41:58872] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xtrl.com"] [uri "/build/.git/config"] [unique_id "ai9ZON4sToJroWlsuOm6NQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 00:36:33
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 20:36:29.321460 2026] [security2:error] [pid 16482:tid 16482] [client 35.228.40.41:44194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.quintessence.com.webdub.com"] [uri "/src/.git/config"] [unique_id "ai9JDUFQxgymBEzAE0-Y4wAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:32:53
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:32:46.918213 2026] [security2:error] [pid 1284:tid 1299] [client 35.228.40.41:46990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "2291106.com"] [uri "/.git/config"] [unique_id "ai86HmE90nWF5dIooXbb_wAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-06-14 23:22:34
(3 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ช๐ธ
pipeline.es
2026-06-14 22:55:19
(3 hours ago)
Web scanning / probing for vulnerable paths | URL: /build/.git/config | Evidence: 35.228.40.41 - - [ ...
show more
Web scanning / probing for vulnerable paths | URL: /build/.git/config | Evidence: 35.228.40.41 - - [15/Jun/2026:00:55:01 +0200] \"GET /build/.git/config HTTP/1.1\" 404 43308 \"-\" \"Mozilla/4.0 (compatible; MSIE 6.0; Windows CE; IEMobile 7.11)\" GEOIP_COUNTRY_CODE=FI | ASN: GOOGLE-CLOUD-PLATFORM | Country: FI
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:33:04
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:32:56.885686 2026] [security2:error] [pid 5155:tid 5155] [client 35.228.40.41:39140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.terms.oxfordgliding.com"] [uri "/backend/.git/config"] [unique_id "ai8sGOrBGJtJA_YfUEb9ugAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:05:44
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:05:36.276519 2026] [security2:error] [pid 18479:tid 18479] [client 35.228.40.41:41432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "koshland.us"] [uri "/backend/.git/config"] [unique_id "ai8lsDrK2RbXb-tpd52IowAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:02:30
(4 hours ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-14 21:23:55
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 17:23:47.372307 2026] [security2:error] [pid 8682:tid 8682] [client 35.228.40.41:41932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "terazon.net"] [uri "/v2/.git/config"] [unique_id "ai8b43fa5q-K-SRo0s1BeAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 20:56:09
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.40.41 (41.40.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 16:56:03.687392 2026] [security2:error] [pid 32446:tid 32446] [client 35.228.40.41:47246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "getpic.com"] [uri "/backend/.git/config"] [unique_id "ai8VY-sj3GYALKDSEawPigAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Bouncer
2026-06-14 16:32:53
(10 hours ago)
(mod_security) mod_security (id:930130) triggered by 35.228.40.41 (FI/Finland/41.40.228.35.bc.google ...
show more
(mod_security) mod_security (id:930130) triggered by 35.228.40.41 (FI/Finland/41.40.228.35.bc.googleusercontent.com): 5 in the last 60 secs
show less
Brute-Force
๐ท๐บ
Reaper
2026-06-14 14:44:51
(11 hours ago)
Repeated 404 errors from 35.228.40.41
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 12:06:59
(14 hours ago)
20 attempts against mh-misbehave-ban on pf221104
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
geot
2026-06-14 12:04:18
(14 hours ago)
31 requests, including :
GET /code/.git/config HTTP/1.1
GET /assets/.git/config HTTP/1.1
GET /wordp ...
show more
31 requests, including :
GET /code/.git/config HTTP/1.1
GET /assets/.git/config HTTP/1.1
GET /wordpress/.git/config HTTP/1.1
GET /portal/.git/config HTTP/1.1
GET /wp-content/.git/config HTTP/1.1
GET /v2/.git/config HTTP/1.1
GET /site/.git/config HTTP/1.1
GET /blog/.git/config HTTP/1.1
GET /project/.git/config HTTP/1.1
GET /shop/.git/config HTTP/1.1
GET /build/.git/config HTTP/1.1
GET /v1/.git/config HTTP/1.1
GET /v3/.git/config HTTP/1.1
GET /public/.git/config HTTP/1.1
GET /static/.git/config HTTP/1.1
GET /dist/.git/config HTTP/1.1
show less
Hacking
Bad Web Bot
Web App Attack