🇮🇩
Burayot
2026-09-04 01:43:18
(2 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.229.253.111 (TW/Taiwan/111.253.2 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.229.253.111 (TW/Taiwan/111.253.229.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
🇬🇧
poundawebsiteltd
2026-09-03 22:20:19
(5 hours ago)
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.229.253 ...
show more
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.229.253.111 (TW/Taiwan/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 35.229.253.111 (TW/Taiwan/111.253.229.35.bc.googleusercontent.com): 20 in the last 3600 secs
show less
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 12:26:04
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:25:56.410820 2026] [security2:error] [pid 9704:tid 9704] [client 35.229.253.111:41798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coyotebytes.net"] [uri "/www/.git/config"] [unique_id "aplnVJlkp-vmeX4i_g6DBwAAAD0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 07:42:54
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 03:42:49.544341 2026] [security2:error] [pid 8889:tid 8977] [client 35.229.253.111:58182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myrtlebeachdiet.com"] [uri "/html/.git/config"] [unique_id "apkk-QUb_8cJqZ_wGb6YmAAAAQM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 06:30:04
(21 hours ago)
35.229.253.111 - - [03/Sep/2026:06:30:03 +0000] "GET /backend/.git/config HTTP/1.1" 404 4400 "-" "cr ...
show more
35.229.253.111 - - [03/Sep/2026:06:30:03 +0000] "GET /backend/.git/config HTTP/1.1" 404 4400 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 04:50:02
(22 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-03 02:45:46
(1 day ago)
[03/Sep/2026:05:45:46 +0300] -- 35.229.253.111 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[03/Sep/2026:05:45:46 +0300] -- 35.229.253.111 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 01:43:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 21:43:03.960551 2026] [security2:error] [pid 3135191:tid 3135221] [client 35.229.253.111:59932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.theworldinstituteofslowness.com"] [uri "/html/.git/config"] [unique_id "apjQp_bn0FHRF1YKX1cv_gAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 23:45:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 19:45:02.211459 2026] [security2:error] [pid 2573:tid 2573] [client 35.229.253.111:52314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "growtowork.com"] [uri "/app/.git/config"] [unique_id "api0_siGi7m66NcgNOHmGQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-02 21:59:19
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-02
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-02 19:17:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 15:17:12.490029 2026] [security2:error] [pid 9298:tid 9298] [client 35.229.253.111:41374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graydortmotors.com"] [uri "/site/.git/config"] [unique_id "aph2OB17XNmMMTL3U_O-NQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 16:02:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 12:02:25.635097 2026] [security2:error] [pid 14829:tid 14829] [client 35.229.253.111:41254] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rjhills.com"] [uri "/app/.git/config"] [unique_id "aphIkX9-sRfo9oDG_ZgdBwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-02 14:42:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.253.111 (111.253.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 10:42:09.317897 2026] [security2:error] [pid 7984:tid 7984] [client 35.229.253.111:51886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnandre.org"] [uri "/www/.git/config"] [unique_id "apg1wYHJA0d_E8d4PS-8-wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
Anytech
2026-09-02 14:35:21
(1 day ago)
Blocked by Conn-Monitor: env-probing
Web App Attack
Hacking
🇳🇱
WeCloudit-Anti-Abuse
2026-09-02 13:20:21
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking