πΊπΈ
TPI-Abuse
2026-09-03 17:39:12
(17 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 13:39:08.526813 2026] [security2:error] [pid 14322:tid 14322] [client 35.239.40.65:55796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "casadelsolmexico.net"] [uri "/.git/config"] [unique_id "apmwvKf3tyOUlm4gk2PWYQAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 17:14:38
(42 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 13:14:33.115630 2026] [security2:error] [pid 14982:tid 14982] [client 35.239.40.65:38510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globalweb123.com"] [uri "/.git/config"] [unique_id "apmq-TQD97bqjzO-5b3a5gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 15:25:59
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:25:51.596238 2026] [security2:error] [pid 7805:tid 7805] [client 35.239.40.65:44992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "b2c-llc.com"] [uri "/.git/config"] [unique_id "apmRf1AYz8BjDBiyql3JwQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 15:10:43
(2 hours ago)
apache vulnerability scan
Web App Attack
π¦πΊ
2000cn.com.au
2026-09-03 15:00:51
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-03 14:56:37
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 10:56:31.560214 2026] [security2:error] [pid 14221:tid 14221] [client 35.239.40.65:39290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accentcorporatemedia.com"] [uri "/.git/config"] [unique_id "apmKnwcRIXw3kKy3KFAJggAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-03 09:43:52
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 05:43:48.816104 2026] [security2:error] [pid 965:tid 965] [client 35.239.40.65:7390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title26.com"] [uri "/.git/config"] [unique_id "aplBVJMCD-1uQdLb_-PZOgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©π°
swrlly
2026-09-03 09:20:17
(8 hours ago)
1 unauthorized webserver connection
Web App Attack
π³π±
homeshowdomain.nl
2026-09-01 21:59:15
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-31.
show less
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-09-01 20:18:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 16:18:24.969576 2026] [security2:error] [pid 7456:tid 7456] [client 35.239.40.65:11966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sandiegobeachrentals.com"] [uri "/.git/config"] [unique_id "apczEE-yZWH0yTTh2CslXAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
ne1for23
2026-09-01 18:51:37
(1 day ago)
Attempting to probe for sensitive information accidently exposed via git config.
35.239.40.65 - - [ ...
show more
Attempting to probe for sensitive information accidently exposed via git config.
35.239.40.65 - - [01/Sep/2026:18:51:36 +0000] "GET /.git/config HTTP/1.1" 403 153 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Hacking
πΊπΈ
TPI-Abuse
2026-09-01 11:09:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:08:56.407205 2026] [security2:error] [pid 22241:tid 22356] [client 35.239.40.65:18472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jrbllc.com"] [uri "/.git/config"] [unique_id "apaySGXeETkt3gyVFH9CIQAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-09-01 07:05:25
(2 days ago)
Abuse Detected (20)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 06:14:07
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.239.40.65 (65.40.239.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 02:14:01.008836 2026] [security2:error] [pid 20262:tid 20262] [client 35.239.40.65:11674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "firstlegend.info"] [uri "/.git/config"] [unique_id "apZtKQAlhdlp384pNo6ICwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-31 21:59:23
(2 days ago)
Auto-ban: >3000 req/min op 2026-08-31
Web App Attack
SSH
Hacking