๐บ๐ธ
TPI-Abuse
2026-09-16 09:51:29
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 05:51:24.853874 2026] [security2:error] [pid 4053:tid 4068] [client 35.242.165.97:54802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saskiarose.m3sxa.com"] [uri "/.git/config"] [unique_id "aqpmnIR3TxgV9uDWFagCowAAAE0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 09:49:37
(2 hours ago)
[cb-01vi] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-01vi] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.242.165.97 - - [16/Sep/2026:11:49:30 +0200] "GET /.git/config HTTP/1.1" 301 520 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 09:05:36
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 05:05:30.591942 2026] [security2:error] [pid 28154:tid 28154] [client 35.242.165.97:59568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sasha.kronrod.com"] [uri "/.git/config"] [unique_id "aqpb2utNMUkPzeUWuwdygQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
MusicLibrary
2026-09-16 08:46:00
(3 hours ago)
Attempted access to sensitive configuration files (.env, .git, etc.)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 08:06:14
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 04:06:08.820176 2026] [security2:error] [pid 24145:tid 24170] [client 35.242.165.97:37560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saryagroup.pershia.net"] [uri "/.git/config"] [unique_id "aqpN8F7DHYmiHvPecxO3AQAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 07:33:25
(4 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-16 06:02:46
(6 hours ago)
Banned by Fail2Ban on server
Web App Attack
๐ฉ๐ช
EGP Abuse Dept
2026-09-16 05:14:13
(7 hours ago)
Scanning for web/db/file exploits on www.sargentini.nl
SQL Injection
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 04:17:11
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 00:17:04.429160 2026] [security2:error] [pid 10557:tid 10557] [client 35.242.165.97:53794] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sarawatt.powerastronomy.com"] [uri "/.git/config"] [unique_id "aqoYQHGZ4Zkctp8SNpfuyAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 03:57:07
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 23:57:00.050336 2026] [security2:error] [pid 8418:tid 8418] [client 35.242.165.97:39654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saratogaequity.com.martintommer.com"] [uri "/.git/config"] [unique_id "aqoTjFycL27e-o55jdn2EwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 03:12:23
(9 hours ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ฎ
paissangroup
2026-09-16 02:55:43
(9 hours ago)
Multiple WAF Violations
Web App Attack
๐จ๐ญ
4server
2026-09-16 02:54:12
(9 hours ago)
[WedSep1604:54:08.2160992026][security2:error][pid2389893:tid2389974][client35.242.165.97:0]ModSecur ...
show more
[WedSep1604:54:08.2160992026][security2:error][pid2389893:tid2389974][client35.242.165.97:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.sarand.ch.81-17-25-250.cpanel.site\"][uri\"/.git/config\"][unique_id\"aqoE0Go_CJI06lmRbtAV_QAAAQc\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 00:54:04
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.165.97 (97.165.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 20:54:00.547198 2026] [security2:error] [pid 22761:tid 22761] [client 35.242.165.97:60048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sarahingber.ingberinteriors.com"] [uri "/.git/config"] [unique_id "aqnoqFzzfqAW2tO60UUslAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-16 00:34:15
(11 hours ago)
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show more
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
Hacking