๐บ๐ธ
TPI-Abuse
2026-09-02 04:48:38
(7 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:48:34.524039 2026] [security2:error] [pid 11681:tid 11681] [client 35.233.93.26:41472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.scrunchiebutt.com"] [uri "/api/.git/config"] [unique_id "apeqom6SZri0GHE7jkOeqwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 02:25:03
(2 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
xmission.com
2026-09-02 01:58:35
(2 hours ago)
Blocked by UFW (TCP on 443)
Source port: 50446
TTL: 60
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 443)
Source port: 50446
TTL: 60
Packet length: 60
TOS: 0x00
This report (for 35.233.93.26) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-02 01:25:31
(3 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-02 00:42:07
(4 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฑ๐น
NotACaptcha
2026-09-01 23:52:43
(5 hours ago)
webserver:80 [02/Sep/2026] "GET /wordpress/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
...
show more
webserver:80 [02/Sep/2026] "GET /wordpress/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /htdocs/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /site/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /var/www/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /api/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /html/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /app/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /.git/config HTTP/1.1" 403 344 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /backend/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:80 [02/Sep/2026] "GET /public/.git/config HTTP/1.1" 404 341 "-" "crusader-worker/1.0"
webserver:443 [02/Sep/2026] "GET /www/.gi...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 23:12:05
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 19:11:57.920849 2026] [security2:error] [pid 31940:tid 31940] [client 35.233.93.26:40578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "towida.com"] [uri "/wordpress/.git/config"] [unique_id "apdbvcIkTOvAdagKwUuCYwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 22:55:09
(6 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-01 21:59:50
(6 hours ago)
Auto-ban: >3000 req/min op 2026-09-01
Web App Attack
SSH
Hacking
๐ซ๐ท
pm33
2026-09-01 20:29:29
(8 hours ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-01 18:45:02
(10 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 18:18:24
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:18:19.773371 2026] [security2:error] [pid 19604:tid 19604] [client 35.233.93.26:58826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.crescentcitycafe.org"] [uri "/www/.git/config"] [unique_id "apcW62I0tPOUGe9KPBR8SQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 14:03:11
(14 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 14:01:27
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.233.93.26 (26.93.233.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 10:01:19.605260 2026] [security2:error] [pid 17539:tid 17539] [client 35.233.93.26:48670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blucielocapital.com"] [uri "/wordpress/.git/config"] [unique_id "apbar43SWlxZTSx6V2IZkAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-01 13:46:14
(15 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack