๐บ๐ธ
TPI-Abuse
2026-09-02 12:19:53
(42 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 08:19:46.768158 2026] [security2:error] [pid 25494:tid 25494] [client 35.252.24.136:40128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.us-war-crimes-commission.blackjobsnetwork.com"] [uri "/.git/config"] [unique_id "apgUYvtRclEiwlFTiBPgCAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 11:11:31
(1 hour ago)
suspicious behavior
Blog Spam
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 10:42:02
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:41:56.601517 2026] [security2:error] [pid 20629:tid 20629] [client 35.252.24.136:53382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.urrguide.com.coolingsprings.org"] [uri "/.git/config"] [unique_id "apf9dKypMWxaxcVqwBD2_gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
todix
2026-09-02 09:29:06
(3 hours ago)
WebAttack or semilar from 35.252.24.136
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 08:45:47
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:45:39.520635 2026] [security2:error] [pid 22900:tid 22900] [client 35.252.24.136:38378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.urie.to.daveewalker.bz"] [uri "/.git/config"] [unique_id "apfiM2rPJKzQQuV1eaBgYgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 06:33:17
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:33:13.761241 2026] [security2:error] [pid 23869:tid 23869] [client 35.252.24.136:51436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.urbanrepairs.michaelward.com"] [uri "/.git/config"] [unique_id "apfDKRPwpJ6FujnAJKTLtQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 06:27:42
(6 hours ago)
35.252.24.136 - - [02/Sep/2026:08:27:38 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linu ...
show more
35.252.24.136 - - [02/Sep/2026:08:27:38 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [02/Sep/2026:08:27:39 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [02/Sep/2026:08:27:39 +0200] "POST / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [02/Sep/2026:08:27:39 +0200] "GET /.git/config HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [02/Sep/2026:08:27:39 +0200] "GET /.env HTTP/1.1" 403 183 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [02/Sep/2026:08:27:39 +0200] "GET /.env.local HTTP/1.1" 403 183
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
marten_o
2026-09-02 04:12:39
(8 hours ago)
35.252.24.136 - - [02/Sep/2026:06:12:38 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 575 "-" "Mozilla/ ...
show more
35.252.24.136 - - [02/Sep/2026:06:12:38 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 575 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 398 773
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 03:40:10
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 23:40:06.996213 2026] [security2:error] [pid 25531:tid 25531] [client 35.252.24.136:45940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.uraniumjewelry.rotarymagnetics.com"] [uri "/.git/config"] [unique_id "apeallDaam0ZIZtm88Y3FQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-02 02:53:33
(10 hours ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
nyt
2026-09-02 01:18:37
(11 hours ago)
404 flood (16/60s), 404 flood (17/60s)
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-09-02 01:14:54
(11 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
IndigoRidge
2026-09-02 01:05:09
(11 hours ago)
35.252.24.136 - - [01/Sep/2026:21:05:03 -0400] "GET /.git/config HTTP/1.0" 404 5573 "-" "Mozilla/5.0 ...
show more
35.252.24.136 - - [01/Sep/2026:21:05:03 -0400] "GET /.git/config HTTP/1.0" 404 5573 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [01/Sep/2026:21:05:03 -0400] "GET /.env HTTP/1.0" 404 5573 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
35.252.24.136 - - [01/Sep/2026:21:05:08 -0400] "GET /app/.env HTTP/1.0" 404 5573 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:48:16
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.252.24.136 (136.24.252.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:48:10.400937 2026] [security2:error] [pid 27620:tid 27620] [client 35.252.24.136:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.upskirtcrazy.com"] [uri "/.git/config"] [unique_id "apdySum4P47PXeqZgtjCXQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 00:19:08
(12 hours ago)
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: IL, Attack patterns: Word ...
show more
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: IL, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack