๐บ๐ธ
TPI-Abuse
2026-09-03 23:57:27
(10 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 19:57:21.880733 2026] [security2:error] [pid 31837:tid 31837] [client 35.246.96.18:33614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sjstauffer.net"] [uri "/public/.git/config"] [unique_id "apoJYShy1oINVxXIBRAQSgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-03 23:08:04
(59 minutes ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-09-03 22:01:34
(2 hours ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
๐ญ๐บ
bcsaba
2026-09-03 18:35:26
(5 hours ago)
Probing for .git:
35.246.96.18 - - [03/Sep/2026:20:35:24 +0200] "GET /.git/config HTTP/1.1" 403 146 ...
show more
Probing for .git:
35.246.96.18 - - [03/Sep/2026:20:35:24 +0200] "GET /.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
show less
Web App Attack
๐ฉ๐ช
raph
2026-09-03 16:39:29
(7 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ฉ๐ช
mondor.ro
2026-09-03 16:30:37
(7 hours ago)
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.246.96.18, Reason:[ ...
show more
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.246.96.18, Reason:[(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (GB/United Kingdom/18.96.246.35.bc.googleusercontent.com): 3 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-03 16:23:57
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 12:23:53.041302 2026] [security2:error] [pid 1434473:tid 1434553] [client 35.246.96.18:46632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.theworldinstituteofslowness.com"] [uri "/backend/.git/config"] [unique_id "apmfGRwdShVqlnClIR55lwAAAgI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-03 14:30:24
(9 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-03 13:45:01
(10 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 12:21:24
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:21:19.165538 2026] [security2:error] [pid 8322:tid 8420] [client 35.246.96.18:35842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.maryschalkdesign.com"] [uri "/www/.git/config"] [unique_id "aplmPxmQAm_UMpJgGhUM8QAAAUo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-03 11:15:34
(12 hours ago)
Try to access /backend/.git/config
Web App Attack
๐ซ๐ท
dynamix
2026-09-03 10:14:23
(13 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 09:51:50
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.96.18 (18.96.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 05:51:42.990042 2026] [security2:error] [pid 13614:tid 13614] [client 35.246.96.18:55952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sanvicentedelraspeig.com"] [uri "/site/.git/config"] [unique_id "aplDLmGMrXsR8Z_gXhPj-QAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-09-03 09:50:05
(14 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-03 06:31:45
(17 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking