🇩🇪
raph
2026-09-04 02:10:15
(12 minutes ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-03 23:44:22
(2 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 23:19:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 19:19:09.921972 2026] [security2:error] [pid 31958:tid 31958] [client 35.252.226.211:56334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sittser.com"] [uri "/var/www/.git/config"] [unique_id "apoAbTSOeuKKmYACmasEVwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
pixiekat
2026-09-03 23:10:49
(3 hours ago)
[Fri Sep 04 00:10:48.432563 2026] [security2:error] [pid 350617:tid 350698] [client 35.252.226.211:4 ...
show more
[Fri Sep 04 00:10:48.432563 2026] [security2:error] [pid 350617:tid 350698] [client 35.252.226.211:43306] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/apache2/modsecurity-crs/coreruleset/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.29.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "spacecadetgrrl.me"] [uri "/site/.git/config"] [unique_id "apn-eK6TGW6fLl1nQmgVNgAAABM"]
[Fri Sep 04 00:10:48.432565 2026] [security2:error] [pid 350618:tid 350735] [client 35.252.226.211:43268] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/apache2/modsecurity-crs/coreruleset/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.29.0"] [tag "anomaly-eval
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 22:53:24
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:53:18.431450 2026] [security2:error] [pid 23632:tid 23651] [client 35.252.226.211:57980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "conservativedemocrat.com"] [uri "/src/.git/config"] [unique_id "apn6XlllvoWw1wmHBAxUqAAAAUE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-03 21:59:49
(4 hours ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
🇬🇧
Aetherweb Ark
2026-09-03 20:19:42
(6 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.252.226.211 (US/United States/211.226.252.35 ...
show more
(mod_security) mod_security (id:949110) triggered by 35.252.226.211 (US/United States/211.226.252.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 18:35:07
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:34:57.626009 2026] [security2:error] [pid 16213:tid 16213] [client 35.252.226.211:48006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "markrikey.com"] [uri "/var/www/.git/config"] [unique_id "apm90et9CsA8ESlcn2RnnAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
paissangroup
2026-09-03 18:28:06
(7 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-03 15:40:02
(10 hours ago)
suspicious request in access.log
Web App Attack
🇬🇧
consul.to
2026-09-03 15:30:30
(10 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 13:22:44
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.226.211 (211.226.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 09:22:40.103914 2026] [security2:error] [pid 31899:tid 31899] [client 35.252.226.211:52706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwamworld.com"] [uri "/site/.git/config"] [unique_id "apl0oAjOjSDp69gd7MBQKwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-03 11:13:02
(15 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
🇮🇹
VHosting
2026-09-03 09:55:05
(16 hours ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-03 05:14:11
(21 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking