๐บ๐ธ
TPI-Abuse
2026-06-15 04:07:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:07:46.883995 2026] [security2:error] [pid 2468:tid 2487] [client 35.241.98.98:51276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.erinrusso.com.williampower.com"] [uri "/dashboard/.git/config"] [unique_id "ai96kpkmtE_4rWtBQzo4KwAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-06-15 02:44:45
(1 day ago)
CrowdSec abuse IP report (host SRV-2) Scenario: crowdsecurity/http-sensitive-files
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 02:24:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:24:44.638844 2026] [security2:error] [pid 4372:tid 4372] [client 35.241.98.98:37942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sitexpress.es"] [uri "/v2/.git/config"] [unique_id "ai9ibMtWw986LJXXuK8tPQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oralunal
2026-06-15 02:00:33
(1 day ago)
IP banned by Fail2Ban in jail suss access.log ah-app-1
...
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 01:57:22
(1 day ago)
Try to connect to Port_Scan_443_stealth
Port Scan
๐ฉ๐ช
4server
2026-06-15 01:10:32
(1 day ago)
[MonJun1503:10:30.3940222026][security2:error][pid3338868:tid3338885][client35.241.98.98:0]ModSecuri ...
show more
[MonJun1503:10:30.3940222026][security2:error][pid3338868:tid3338885][client35.241.98.98:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.ksmstudio.ch.136-243-54-122.cpanel.site\"][uri\"/assets/.git/config\"][unique_id\"ai9RBp3wLQBVKk8VEJlXYAAAAQ0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-06-15 01:03:05
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ณ๐ฑ
wlt-blocker
2026-06-15 00:30:46
(1 day ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:59:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:59:01.345378 2026] [security2:error] [pid 29188:tid 29188] [client 35.241.98.98:49556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.scr-publications.us.schlegelcreative.com"] [uri "/site/.git/config"] [unique_id "ai8yNaR9ZzdUkdmRqlQG1wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-14 22:55:01
(1 day ago)
suspicious request in access.log
Web App Attack
๐ซ๐ท
dynamix
2026-06-14 22:52:45
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:39:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:39:45.490755 2026] [security2:error] [pid 672:tid 672] [client 35.241.98.98:55176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.noviasaltovacio.com.mx.spyasociados.com"] [uri "/symfony/.git/config"] [unique_id "ai8tsW5U9-3SAdlwUZUcXQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 22:13:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.98.98 (98.98.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 18:13:12.855331 2026] [security2:error] [pid 2474:tid 2474] [client 35.241.98.98:35382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.muzenique.com.bridgital.com"] [uri "/build/.git/config"] [unique_id "ai8nePK6T20HL_mkrOhtWgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:01:27
(1 day ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking
๐ฉ๐ช
Ba-Yu
2026-06-14 21:52:26
(1 day ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack