๐ฉ๐ช
yitzhaq
2026-09-16 16:53:42
(20 minutes ago)
35.255.205.16 - - [16/Sep/2026:18:53:36 +0200] "GET /.git/config HTTP/1.1" 403 4551 "-" "-"
35.255.2 ...
show more
35.255.205.16 - - [16/Sep/2026:18:53:36 +0200] "GET /.git/config HTTP/1.1" 403 4551 "-" "-"
35.255.205.16 - - [16/Sep/2026:18:53:38 +0200] "GET /.git/config HTTP/1.1" 403 4549 "-" "-"
35.255.205.16 - - [16/Sep/2026:18:53:38 +0200] "GET /.git/config HTTP/1.1" 403 4550 "-" "-"
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-16 16:35:05
(38 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 12:35:00.533892 2026] [security2:error] [pid 27515:tid 27515] [client 35.255.205.16:43618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cottrel.com"] [uri "/.git/config"] [unique_id "aqrFNBZ11RuPhCX8Co1qqQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 16:16:14
(57 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 12:16:06.266327 2026] [security2:error] [pid 12480:tid 12480] [client 35.255.205.16:47846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cosplayculture.com"] [uri "/.git/config"] [unique_id "aqrAxi9f67kIXj3kceuroAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-16 16:12:43
(1 hour ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after sensitive config/credentials exposure probe. Evidence: AttackPattern: /\.git (Match: /.git)
show less
Hacking
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:51:16
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:51:12.626170 2026] [security2:error] [pid 3793:tid 3793] [client 35.255.205.16:52046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "corstratinc.com"] [uri "/.git/config"] [unique_id "aqq68Ch-KfDvSlX2sSD5LgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-16 15:45:02
(1 hour ago)
suspicious request in access.log
Web App Attack
๐ฌ๐ง
SilverZippo
2026-09-16 15:37:07
(1 hour ago)
Web App Attack
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-16 15:36:07
(1 hour ago)
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-04al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 35.255.205.16 - - [16/Sep/2026:17:35:46 +0200] "GET /.git/config HTTP/1.1" 410 6190 "-" "-"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-16 15:32:09
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:29:55
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:29:49.649087 2026] [security2:error] [pid 31590:tid 31590] [client 35.255.205.16:42436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "corporatepedals.vanemby.com"] [uri "/.git/config"] [unique_id "aqq17f0vHKlRel4rpcGJ4wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
GEDAL
2026-09-16 15:28:28
(1 hour ago)
Fail2ban webexploits @ <hostname> : 35.255.205.16 - - [16/Sep/2026:17:28:26 +0200] "GET /.git/config ...
show more
Fail2ban webexploits @ <hostname> : 35.255.205.16 - - [16/Sep/2026:17:28:26 +0200] "GET /.git/config HTTP/1.1" 301 162 "-" "-"
show less
Brute-Force
SSH
๐ฌ๐ง
Aetherweb Ark
2026-09-16 15:13:07
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.255.205.16 (US/United States/16.205.255.35.b ...
show more
(mod_security) mod_security (id:949110) triggered by 35.255.205.16 (US/United States/16.205.255.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:07:22
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.255.205.16 (16.205.255.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:07:18.462797 2026] [security2:error] [pid 10645:tid 10686] [client 35.255.205.16:59134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cornell61.org"] [uri "/.git/config"] [unique_id "aqqwpmg8NI6wiY3X7z8CIgAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-16 15:05:50
(2 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-16 15:05 UTC
show less
Hacking
Web App Attack
๐ฆ๐น
AustrianSimon
2026-06-27 17:44:13
(2 months ago)
27 Jun 2026 17:44:13UTC:spam e-mail originating from IP address 35.255.205.16 failing dmarc criteria ...
show more
27 Jun 2026 17:44:13UTC:spam e-mail originating from IP address 35.255.205.16 failing dmarc criteria of sending domain <[email protected] > (e.g. unauthorized by sending domain)
show less
Email Spam