🇺🇸
TPI-Abuse
2026-09-08 00:38:34
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.247.218.107 (107.218.247.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.247.218.107 (107.218.247.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 20:38:31.055583 2026] [security2:error] [pid 13016:tid 13016] [client 35.247.218.107:54788] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "69strains.badgerkelley.com"] [uri "/.git/config"] [unique_id "ap9ZB5zoTXEDgQKq1NhoSgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
strefapi_com
2026-09-07 19:37:49
(12 hours ago)
Brute-force, web
...
Hacking
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:33:13
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.247.218.107 (107.218.247.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.247.218.107 (107.218.247.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:33:05.474388 2026] [security2:error] [pid 15624:tid 15624] [client 35.247.218.107:41902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whoore.com"] [uri "/.git/config"] [unique_id "ap71Ud4MdpR2djfwWDICPgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-07 17:23:13
(14 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-07 10:08:23
(21 hours ago)
Trying to access config files
Web App Attack
🇳🇱
javierin
2026-09-07 01:51:59
(1 day ago)
35.247.218.107 - www.xn--emas-sra.es - - [07/Sep/2026:01:51:59 +0000] "GET /@fs/etc/passwd HTTP/1.1" ...
show more
35.247.218.107 - www.xn--emas-sra.es - - [07/Sep/2026:01:51:59 +0000] "GET /@fs/etc/passwd HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.247.218.107 - www.xn--emas-sra.es - - [07/Sep/2026:01:51:59 +0000] "GET /@fs/etc/passwd?raw HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
🇳🇱
Savvii
2026-09-06 21:16:24
(1 day ago)
21 attempts against mh-misbehave-ban on yeti
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Savvii
2026-09-06 21:01:20
(1 day ago)
20 attempts against mh-misbehave-ban on yeti
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 18:27:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.247.218.107 (107.218.247.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.247.218.107 (107.218.247.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 14:27:20.113457 2026] [security2:error] [pid 23397:tid 23451] [client 35.247.218.107:59458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wicca-love-spells.com"] [uri "/.git/config"] [unique_id "ap2wiIjpuV7PPZkyXWNkCAAAANc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
VHosting
2026-09-06 17:55:03
(1 day ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
🇳🇱
Site.eu
2026-09-06 06:41:51
(2 days ago)
Excessive 404/403 errors
Brute-Force
Anonymous
2026-09-06 01:06:08
(2 days ago)
Trying to access config files
Web App Attack
🇦🇺
screwlooseit.com.au
2026-09-05 23:06:07
(2 days ago)
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/107.218.247.35.bc.googleuserconte ...
show more
Blocked by CSF 13 firewall - Rule: config-dotfile
US/United States/107.218.247.35.bc.googleusercontent.com
show less
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-05 22:00:20
(2 days ago)
Auto-ban: >3000 req/min op 2026-09-05
Web App Attack
SSH
Hacking
🇩🇪
big-cloud.nl
2026-09-05 20:31:15
(2 days ago)
Try to access /.git/config
Web App Attack