🇺🇸
TPI-Abuse
2026-09-04 13:37:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:37:09.877576 2026] [security2:error] [pid 32103:tid 32103] [client 35.242.253.35:55050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "belintxon.com"] [uri "/public/.git/config"] [unique_id "aprJhbzkjqVoyc5cZJ9OMQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Stara
2026-09-04 12:17:30
(1 day ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
SSH
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:46:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:46:17.716698 2026] [security2:error] [pid 21677:tid 21677] [client 35.242.253.35:33940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seashellinvitations.com"] [uri "/var/www/.git/config"] [unique_id "apqheUBYPZiVVcuk5KKzTwAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-04 08:09:55
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 06:24:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 02:24:02.717279 2026] [security2:error] [pid 20623:tid 20623] [client 35.242.253.35:57520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "takemehomedogrescue.org"] [uri "/backend/.git/config"] [unique_id "appkAli0zyi3VT1-wiVjKAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-04 05:37:28
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:30:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:29:56.030865 2026] [security2:error] [pid 22283:tid 22283] [client 35.242.253.35:36064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.limocorpuschristi.com"] [uri "/www/.git/config"] [unique_id "appXVIQ7qjy5vyNS2tOOBgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-04 04:24:34
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 35.242.253.35 (DE/Germany/35.253.242.35.bc.goog ...
show more
(mod_security) mod_security (id:949110) triggered by 35.242.253.35 (DE/Germany/35.253.242.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇩🇪
Philister11
2026-09-04 01:04:31
(1 day ago)
CrowdSec: crowdsecurity/http-probing (DE/AS396982)
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 00:28:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.242.253.35 (35.253.242.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 20:27:53.020611 2026] [security2:error] [pid 26985:tid 26985] [client 35.242.253.35:56298] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fatcavestudios.fatcavemedia.com"] [uri "/html/.git/config"] [unique_id "apoQiXQYnPR2FzAiE9TFZAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
debestelapp
2026-09-04 00:20:10
(1 day ago)
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 23:55:02
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇫🇮
mnazibo
2026-09-03 23:00:06
(1 day ago)
Date: 04/Sep/2026 01:40:10 | Reported IP: 35.242.253.35 mod_security | id: 930130 | DE/group.my_doma ...
show more
Date: 04/Sep/2026 01:40:10 | Reported IP: 35.242.253.35 mod_security | id: 930130 | DE/group.my_domain/- | Connections: 12 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /api/.git/config; /app/.git/config; /backend/.git/config; /.git/config; /htdocs/.git/config; /html/.git/config; /public/.git/config; /site/.git/config; /src/.git/config; /var/www/.git/config; /wordpress/.git/config; /www/.git/config | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
🇳🇱
homeshowdomain.nl
2026-09-03 21:59:32
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
🇩🇪
FD-IX
2026-09-03 20:16:12
(1 day ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack