๐ฟ๐ฆ
conure.sh
2026-09-02 12:09:48
(28 minutes ago)
csagent: score 20.0: secrets grab x2; 1 domain(s) in 0s
Web App Attack
Anonymous
2026-09-02 09:17:13
(3 hours ago)
Bot / seems abusive / Apache connections: 97
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 07:06:11
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 03:06:03.470186 2026] [security2:error] [pid 28216:tid 28216] [client 35.239.174.137:35260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "restaurantfixture.com"] [uri "/www/.git/config"] [unique_id "apfK21qHAQYcsakWRM3q6QAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-02 06:50:12
(5 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:12:53
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:12:49.090138 2026] [security2:error] [pid 30909:tid 30909] [client 35.239.174.137:45384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.richmondrents.com"] [uri "/.git/config"] [unique_id "ape-YW5_bksDXXpHSDp2ggAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:35:25
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:35:19.418910 2026] [security2:error] [pid 32740:tid 32740] [client 35.239.174.137:33526] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vandermeerlab.org"] [uri "/src/.git/config"] [unique_id "ape1l6UKCATrpZVSosW9XwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:11:30
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:11:21.857346 2026] [security2:error] [pid 12670:tid 12670] [client 35.239.174.137:45562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mark.rawlings.name"] [uri "/app/.git/config"] [unique_id "apev-XyqZLNQM9x_g6wV_wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:55:15
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:55:09.123817 2026] [security2:error] [pid 22608:tid 22608] [client 35.239.174.137:42854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tortoisehosting.com"] [uri "/backend/.git/config"] [unique_id "apesLdX2Ch967E9oC1B7YQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:46:36
(7 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.239.174.137 (US/United States/137. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.239.174.137 (US/United States/137.174.239.35.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 03:39:03
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 23:38:55.498846 2026] [security2:error] [pid 878:tid 878] [client 35.239.174.137:49450] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dodgersboosterclub.com"] [uri "/var/www/.git/config"] [unique_id "apeaTyjqKhxkNQ7g6ZNwOQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-09-01 21:43:49
(14 hours ago)
crowdsecurity/http-probing detected by CrowdSec
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 13:14:56
(23 hours ago)
Multiple WAF Violations
Web App Attack
๐ธ๐ช
peterh
2026-09-01 10:10:00
(1 day ago)
35.239.174.137 - - [01/Sep/2026:10:45:35 +0200] "GET /.git/config HTTP/1.1" 404 196 "-" "crusader-wo ...
show more
35.239.174.137 - - [01/Sep/2026:10:45:35 +0200] "GET /.git/config HTTP/1.1" 404 196 "-" "crusader-worker/1.0"
show less
Bad Web Bot
Phishing
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 09:52:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.174.137 (137.174.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:52:23.056016 2026] [security2:error] [pid 20083:tid 20199] [client 35.239.174.137:60226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.realauthentic.coffee"] [uri "/var/www/.git/config"] [unique_id "apagV3rBwjt5T889PpFu7QAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-09-01 05:14:03
(1 day ago)
12 attacks on VC URLs:
GET /www/.git/config HTTP/1.1
Hacking