๐ฌ๐ง
consul.to
2026-09-02 04:59:13
(12 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ฏ๐ต
Valhalla
2026-09-02 04:52:21
(12 hours ago)
/.git/config
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:38:48
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:38:45.127857 2026] [security2:error] [pid 23333:tid 23333] [client 130.211.199.207:24802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wintercypher.com"] [uri "/.git/config"] [unique_id "apeoVQ8f_RA8ldOqctFcYQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:01:35
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:01:28.543311 2026] [security2:error] [pid 14973:tid 14973] [client 130.211.199.207:9546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wgalleria.com"] [uri "/.git/config"] [unique_id "apefmBN_KH7sOJbI9tRa7AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 02:32:12
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 22:32:05.617028 2026] [security2:error] [pid 22830:tid 22830] [client 130.211.199.207:11136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vrevgaming.net"] [uri "/.git/config"] [unique_id "apeKpZniUik62dF5mgy9aQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-02 01:47:03
(15 hours ago)
(mod_security) mod_security (id:949110) triggered by 130.211.199.207 (US/United States/207.199.211.1 ...
show more
(mod_security) mod_security (id:949110) triggered by 130.211.199.207 (US/United States/207.199.211.130.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-02 01:11:30
(16 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:57:37
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:57:31.332828 2026] [security2:error] [pid 19612:tid 19612] [client 130.211.199.207:36396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vanemby.com"] [uri "/.git/config"] [unique_id "apd0e-CHjXA7MtzpaOv6gwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐ฐ
ncsr-sec
2026-09-01 17:37:07
(23 hours ago)
Attacked NCSR.CN production server: SSH brute-force / web scanning / honeypot trips. fail2ban banned ...
show more
Attacked NCSR.CN production server: SSH brute-force / web scanning / honeypot trips. fail2ban banned. Evidence in server logs.
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-01 11:08:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:08:50.155514 2026] [security2:error] [pid 3753:tid 3753] [client 130.211.199.207:24070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jwilder.com"] [uri "/.git/config"] [unique_id "apayQlt6n-PmmVRovARyEAAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:15:17
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:15:12.572442 2026] [security2:error] [pid 6926:tid 6926] [client 130.211.199.207:8128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "honnwong.com"] [uri "/.git/config"] [unique_id "apZ7gKTcZL0cvO-rGZJIIgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:20:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:20:13.280560 2026] [security2:error] [pid 26307:tid 26307] [client 130.211.199.207:57776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davedoeswater.com"] [uri "/.git/config"] [unique_id "apZgjS4zuYNbCNrVNkOqUAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 03:12:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:12:24.571660 2026] [security2:error] [pid 21752:tid 21752] [client 130.211.199.207:11796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bankcardtexas.com"] [uri "/.git/config"] [unique_id "apZCmELvl1iuXr6oDI-s9wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 02:35:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.199.207 (207.199.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 22:35:04.989243 2026] [security2:error] [pid 26047:tid 26047] [client 130.211.199.207:23404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anniversaryprintednapkins.com"] [uri "/.git/config"] [unique_id "apY52OEeXkrtKOYJrEOUKwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-08-31 23:31:46
(1 day ago)
git exposure on naturologie.com/.git/config โ WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack