🇳🇱
Site.eu
2026-09-07 13:48:38
(1 hour ago)
Excessive multi-domain requests
Brute-Force
🇫🇷
masterguru
2026-09-07 12:35:45
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:48:36
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:48:32.856218 2026] [security2:error] [pid 4578:tid 4578] [client 35.246.209.40:53972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sharonmauldin.stardancertantra.com"] [uri "/.git/config"] [unique_id "ap56YOihOXLZ3Q5jITKFtgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-07 08:45:41
(6 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:02:51
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:02:44.598988 2026] [security2:error] [pid 547:tid 547] [client 35.246.209.40:55676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sessionsdispensary.com.modeltdr.com"] [uri "/.git/config"] [unique_id "ap5vpBT34zsbvWIRd18vwAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇳
nadnitin
2026-09-07 07:58:51
(7 hours ago)
Automated trigger via Nginx Police. Reason: PATH-PROBER. Trigger Log: 35.246.209.40 - - [07/Sep/2026 ...
show more
Automated trigger via Nginx Police. Reason: PATH-PROBER. Trigger Log: 35.246.209.40 - - [07/Sep/2026:13:28:51 +0530] "GET /.env HTTP/1.1" 444 0 Host:"www.sessionmanager.linkpc.net" Backend:"-" RespTime:-s "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:36:13
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:36:08.825802 2026] [security2:error] [pid 8698:tid 8698] [client 35.246.209.40:38954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.seskalee.com.sfsdesignsproductions.com"] [uri "/.git/config"] [unique_id "ap5paExPXdBBhsKdkFBM-gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇿
Antinson
2026-09-07 06:08:43
(9 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
🇩🇪
4server
2026-09-07 03:59:05
(11 hours ago)
[MonSep0705:59:03.5208032026][security2:error][pid3776325:tid3776465][client35.246.209.40:0]ModSecur ...
show more
[MonSep0705:59:03.5208032026][security2:error][pid3776325:tid3776465][client35.246.209.40:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.shaping.ch.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"ap42h4_4LFyO7LfsWWjm5AAAAlY\"]
show less
Port Scan
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 02:32:42
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 22:32:34.467960 2026] [security2:error] [pid 18050:tid 18050] [client 35.246.209.40:48476] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.shannonsglobalodyssey.com.srtmanagementservices.com"] [uri "/.git/config"] [unique_id "ap4iQs1UuwBfQGoaAnQ0_QAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Octopuce
2026-09-07 01:09:07
(14 hours ago)
Aggressive web search of vulnerable pages: /.env /.env.local /app/.env /apps/.env /api/.env ...
Web App Attack
🇺🇸
Dave Hansen
2026-09-07 00:48:17
(14 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.246.209.40 (DE/Germany/40.209.246.35 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.246.209.40 (DE/Germany/40.209.246.35.bc.googleusercontent.com)
show less
SQL Injection
🇩🇪
tentwentyfour
2026-09-07 00:17:10
(14 hours ago)
Blocked for probing for sensitive web application components
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 22:57:21
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:57:16.618873 2026] [security2:error] [pid 1298770:tid 1298847] [client 35.246.209.40:33402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.shalimarindia.com.anthonydalessandro.com"] [uri "/.git/config"] [unique_id "ap3vzJUjPXe-IK_tUmCxbAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 22:05:45
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.209.40 (40.209.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:05:39.841848 2026] [security2:error] [pid 5431:tid 5431] [client 35.246.209.40:50268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.shakenbait.com.bonefrog.com"] [uri "/.git/config"] [unique_id "ap3js2V4bO_wU_fchXnJcwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack