🇺🇸
TPI-Abuse
2026-09-07 10:55:07
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 06:54:59.840789 2026] [security2:error] [pid 16896:tid 16896] [client 8.228.18.210:46158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testsite.etudesoftware.com"] [uri "/.git/config"] [unique_id "ap6YA2g6gf6VcBnatF2mCQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
Sorgin Informatique
2026-09-07 08:21:34
(4 hours ago)
tee-6 : Trying access system files=>/phpinfo.php(phpinfo.php)
Hacking
🇩🇪
gadix
2026-09-07 08:20:46
(4 hours ago)
[07/Sep/2026:10:20:45.284228 +0200] ap5z3YvEXRpVesfKmY2jMgAAAEY 8.228.18.210 42156 127.0.0.1 7081
[0 ...
show more
[07/Sep/2026:10:20:45.284228 +0200] ap5z3YvEXRpVesfKmY2jMgAAAEY 8.228.18.210 42156 127.0.0.1 7081
[07/Sep/2026:10:20:45.789865 +0200] ap5z3YvEXRpVesfKmY2jNAAAAE4 8.228.18.210 42176 127.0.0.1 7081
[07/Sep/2026:10:20:45.984903 +0200] ap5z3YvEXRpVesfKmY2jNQAAAFU 8.228.18.210 42188 127.0.0.1 7081
...
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 08:04:10
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 04:04:06.058166 2026] [security2:error] [pid 5604:tid 5628] [client 8.228.18.210:35810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testproperty.pref-realestate.com"] [uri "/.git/config"] [unique_id "ap5v9onqs0skZHdXxkLnXQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 07:17:36
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 03:17:29.447460 2026] [security2:error] [pid 5958:tid 5958] [client 8.228.18.210:33542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.testo.bwill.dev"] [uri "/.git/config"] [unique_id "ap5lCb5hGKllCG4PiP9eUQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-07 06:17:28
(6 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-07 06:17 UTC
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 05:44:10
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 01:44:04.304763 2026] [security2:error] [pid 30437:tid 30437] [client 8.228.18.210:41368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.the-jerks.flyingdodopublications.com"] [uri "/.git/config"] [unique_id "ap5PJDUL7YLY21MOxrp9uwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-07 05:32:04
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇧🇪
taivas.nl
2026-09-07 04:33:53
(8 hours ago)
Many_bad_calls
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 03:08:49
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 23:08:46.103781 2026] [security2:error] [pid 1775986:tid 1776077] [client 8.228.18.210:57326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.the-aquifer.com.giere.us"] [uri "/.git/config"] [unique_id "ap4qvlAY7FEzOcUqwbbvNQAAAZg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
taivas.nl
2026-09-07 03:02:13
(10 hours ago)
Bad_requests
Bad Web Bot
🇳🇱
Site.eu
2026-09-07 00:42:34
(12 hours ago)
Excessive multi-domain requests
Brute-Force
🇩🇪
EGP Abuse Dept
2026-09-07 00:18:54
(12 hours ago)
Scanning for web/db/file exploits on www.thartoptiek.nl
SQL Injection
Bad Web Bot
Web App Attack
🇫🇷
Octopuce
2026-09-06 22:13:51
(15 hours ago)
Aggressive web search of vulnerable pages: / /.env /.env.local /app/.env /apps/.env ...
Web App Attack
🇺🇸
TPI-Abuse
2026-09-06 22:12:32
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.228.18.210 (210.18.228.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 18:12:25.002768 2026] [security2:error] [pid 391:tid 391] [client 8.228.18.210:56822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thalos.com.pe"] [uri "/.git/config"] [unique_id "ap3lSQ_2d24Mt4_Feie0qQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack