๐บ๐ธ
TPI-Abuse
2026-06-15 04:48:45
(57 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.244.59.217 (217.59.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.59.217 (217.59.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 00:48:40.774906 2026] [security2:error] [pid 3703:tid 3703] [client 35.244.59.217:59894] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nmrising.org.peterlundman.com"] [uri "/v2/.git/config"] [unique_id "ai-EKD2nCjpo3woS2fZpgwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
CK_beats
2026-06-15 04:15:12
(1 hour ago)
Blocked by os-abuseipdb on OPNsense firewall KN-FW01; 348 hits, proto=tcp, ports=443,80
Port Scan
Hacking
๐ณ๐ฑ
wlt-blocker
2026-06-15 03:55:19
(1 hour ago)
Unauthorized access to webpage admin
Web App Attack
๐บ๐ธ
natdem.org
2026-06-15 03:15:18
(2 hours ago)
Web: Git repository probe, Admin panel probe
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-15 02:24:28
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.244.59.217 (217.59.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.59.217 (217.59.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 22:24:21.938380 2026] [security2:error] [pid 12241:tid 12251] [client 35.244.59.217:52352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.absurdotron.com"] [uri "/api/.git/config"] [unique_id "ai9iVfI8ttHCQYBTBPQKKAAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-06-15 02:20:22
(3 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
rh24
2026-06-15 01:23:58
(4 hours ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 35.244.59.217 (IN/In ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 35.244.59.217 (IN/India/217.59.244.35.bc.googleusercontent.com)
show less
Bad Web Bot
Anonymous
2026-06-15 00:35:03
(5 hours ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
Blexyel
2026-06-15 00:33:39
(5 hours ago)
35.244.59.217 - - [15/Jun/2026:02:33:38 +0200] "GET /app/.git/config HTTP/1.1" 404 435 "-" "Mozilla/ ...
show more
35.244.59.217 - - [15/Jun/2026:02:33:38 +0200] "GET /app/.git/config HTTP/1.1" 404 435 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36" "share.fomx.gay"
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
โจ
2026-06-15 00:27:19
(5 hours ago)
Domain : provafarmacistinetwork.medinforma.it
Rule : config
2026-06-15 00:26:34 ***hidden-privacy*** ...
show more
Domain : provafarmacistinetwork.medinforma.it
Rule : config
2026-06-15 00:26:34 ***hidden-privacy*** GET /blog/.git/config - 443 - 35.244.59.217 HTTP/1.1 Nokia6630/1.0 (2.3.129) SymbianOS/8.0 Series60/2.6 Profile/MIDP-2.0 Configuration/CLDC-1.1 - provafarmacistinetwork.medinforma.it 404 8 0 1265 247 224 - -
show less
Hacking
SQL Injection
๐ซ๐ท
masterguru
2026-06-15 00:20:46
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
๐ธ๐ช
konseptit
2026-06-15 00:16:58
(5 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.244.59.217 (IN/India/217.59.244.35.b ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.244.59.217 (IN/India/217.59.244.35.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-06-14 23:02:26
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.244.59.217 (217.59.244.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.244.59.217 (217.59.244.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 19:02:18.031822 2026] [security2:error] [pid 20109:tid 20109] [client 35.244.59.217:52256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hazardrecords.org.ankitoner.com"] [uri "/backend/.git/config"] [unique_id "ai8y-tvL2Y8l5dd8IAWL1QAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-14 22:00:00
(7 hours ago)
Auto-ban: >3000 req/min op 2026-06-14
Web App Attack
SSH
Hacking
๐ต๐พ
armandosaucedo.me
2026-06-14 21:23:14
(8 hours ago)
Threat Intelligence via ARMTI, Web Attack: GET /backend/.git/config
Web App Attack