๐บ๐ธ
TPI-Abuse
2026-06-14 23:48:39
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:48:34.589630 2026] [security2:error] [pid 25925:tid 25955] [client 35.240.243.167:53264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atechtransmission.com"] [uri "/.git/config"] [unique_id "ai890vWLhT7Vi976L839DwAAAFA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
LRob
2026-06-14 23:45:03
(1 month ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 23:09:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:08:58.162233 2026] [security2:error] [pid 9100:tid 9100] [client 35.240.243.167:57044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jbcwebdemo.com.jbcllcnet.com"] [uri "/htdocs/.git/config"] [unique_id "ai80ivTSaPeXwP_QRCrEzQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:52:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:52:08.232824 2026] [security2:error] [pid 27797:tid 27797] [client 35.240.243.167:54856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ithacalions.com"] [uri "/assets/.git/config"] [unique_id "ai8wmIRZee5GzP5hb6ET0gAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-06-14 22:24:26
(1 month ago)
Bad bot ignoring robot.txt
Bad Web Bot
Anonymous
2026-06-14 22:10:02
(1 month ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
dave
2026-06-14 21:14:08
(1 month ago)
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity ...
show more
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity/vpatch-git-config targets=cloud hit_count=30 first_seen=2026-06-14T21:14:08Z last_seen=2026-06-14T21:14:08Z
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 20:50:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.240.243.167 (167.243.240.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 16:49:59.030503 2026] [security2:error] [pid 5942:tid 5942] [client 35.240.243.167:58296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genesis7.co.agenesis7.com"] [uri "/.git/config"] [unique_id "ai8T95jTo8Vgeek544eRIAAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-14 14:21:49
(1 month ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Savvii
2026-06-14 13:09:25
(1 month ago)
20 attempts against mh-misbehave-ban on orcus
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-06-14 11:33:20
(1 month ago)
Too many 404 requests [BY]
Web App Attack
๐ณ๐ฟ
Antinson
2026-06-14 03:30:14
(1 month ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฆ๐บ
2000cn.com.au
2026-06-14 03:23:34
(1 month ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฆ๐บ
screwlooseit.com.au
2026-06-14 03:14:35
(1 month ago)
Blocked by CSF 13 firewall - Rule: 167.243.240.35.bc.googleusercontent.com
Web App Attack
๐บ๐ธ
mnsf
2026-06-14 03:08:03
(1 month ago)
Too many Status 40X (13)
Scanning/Probing (30)
Brute-Force
Web App Attack