๐บ๐ธ
TPI-Abuse
2026-09-01 10:15:38
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:15:35.590434 2026] [security2:error] [pid 28348:tid 28348] [client 35.240.213.148:59056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "independentmusicconference.com"] [uri "/.git/config"] [unique_id "apalx_B3UdLImXutbTh-DwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
lnklnx
2026-09-01 09:05:16
(6 hours ago)
www.lnklnx.com:443 35.240.213.148 - - [01/Sep/2026:03:34:16 -0500] "GET /.git/config HTTP/1.1" 403 5 ...
show more
www.lnklnx.com:443 35.240.213.148 - - [01/Sep/2026:03:34:16 -0500] "GET /.git/config HTTP/1.1" 403 5322 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:35:18
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:35:15.055865 2026] [security2:error] [pid 5188:tid 5188] [client 35.240.213.148:11966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intersession.net"] [uri "/.git/config"] [unique_id "apaAM_wKjjVO30GSusuutAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 03:50:49
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:50:42.704199 2026] [security2:error] [pid 20753:tid 20753] [client 35.240.213.148:5372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bokharienterprises.com"] [uri "/.git/config"] [unique_id "apZLkphclgzJCO6ZpMLTxwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 02:47:01
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:46:57.338593 2026] [security2:error] [pid 13785:tid 13785] [client 35.240.213.148:29838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arkansasbest.com"] [uri "/.git/config"] [unique_id "apY8oQfQ816-MeAnSTkq8wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 02:26:29
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:26:24.657752 2026] [security2:error] [pid 14087:tid 14115] [client 35.240.213.148:43134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alred.net"] [uri "/.git/config"] [unique_id "apY30PaFODPEoRpIu-RcyQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-31 22:21:06
(17 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-31 21:59:07
(18 hours ago)
Auto-ban: >3000 req/min op 2026-08-31
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 19:03:01
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 15:02:52.695218 2026] [security2:error] [pid 21260:tid 21260] [client 35.240.213.148:55824] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "walterceron.com"] [uri "/.git/config"] [unique_id "apXP3BgZrPFx3NxScHIljwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-31 18:47:54
(21 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 16:12:13
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 12:12:09.979442 2026] [security2:error] [pid 29865:tid 29865] [client 35.240.213.148:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shubil.com"] [uri "/.git/config"] [unique_id "apWn2VPTjRdrRBzINdFKbAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 15:53:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:53:48.396542 2026] [security2:error] [pid 30321:tid 30321] [client 35.240.213.148:63554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roughexports.com"] [uri "/.git/config"] [unique_id "apWjjO8V-4DRvBy7AW8XOQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Inartis
2026-08-31 13:39:22
(1 day ago)
35.240.213.148 - - [31/Aug/2026:15:39:21 +0200] "GET /.git/config HTTP/1.1" 403 5005 "-" "Mozilla/5. ...
show more
35.240.213.148 - - [31/Aug/2026:15:39:21 +0200] "GET /.git/config HTTP/1.1" 403 5005 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 11:47:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.213.148 (148.213.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 07:47:29.141640 2026] [security2:error] [pid 32555:tid 32555] [client 35.240.213.148:7324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ussthresher.net"] [uri "/.git/config"] [unique_id "apVp0XXoTm18pgl_R0ZCawAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-31 09:18:56
(1 day ago)
cloudlinux2 fail2ban: 2026-08-31 11:14:31,295 fail2ban.filter [1605]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-31 11:14:31,295 fail2ban.filter [1605]: INFO [plesk-wordpress] Found 198.54.126.122 - 2026-08-31 11:14:31cloudlinux2 fail2ban: 2026-08-31 11:14:32,753 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 103.127.170.137 - 2026-08-31 11:14:32cloudlinux2 fail2ban: 2026-08-31 11:14:46,527 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Unban 122.172.143.22cloudlinux2 fail2ban: 2026-08-31 11:15:25,943 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 103.127.170.137 - 2026-08-31 11:15:25cloudlinux2 fail2ban: 2026-08-31 11:15:26,588 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Ban 103.127.170.137cloudlinux2 fail2ban: 2026-08-31 11:15:32,350 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 37.40.226.153 - 2026-08-31 11:15:32cloudlinux2 fail2ban: 2026-08-31 11:15:26,659 fail2ban.filter [1605]: INFO [recidive] Found 103.127.170.137 - 2026-08-31 11:15:26cloudlinux2 fail2ban: 2026-08-31 11:15:45,
show less
Web App Attack