🇺🇸
TPI-Abuse
2026-09-21 11:54:37
(40 minutes ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 07:54:34.066857 2026] [security2:error] [pid 30099:tid 30099] [client 130.211.255.225:36704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "d365geek.com"] [uri "/.git/config"] [unique_id "arEa-ogkO8bIQzfTvnLTAwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇴
jad-abuse
2026-09-21 11:23:58
(1 hour ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 11:22:12
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 07:22:07.483908 2026] [security2:error] [pid 28972:tid 28972] [client 130.211.255.225:44684] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whatyouhear.com"] [uri "/.git/config"] [unique_id "arETXxtdoAYS6kMN5gnN9wAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
2000cn.com.au
2026-09-21 11:02:28
(1 hour ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-21 10:21:32
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 06:21:24.851243 2026] [security2:error] [pid 16247:tid 16247] [client 130.211.255.225:47840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wellness-mastery.com"] [uri "/.git/config"] [unique_id "arEFJGJM7cKPR67boX7BegAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇦
Anytech
2026-09-21 10:12:47
(2 hours ago)
Blocked by ConnMonitor
Web App Attack
🇩🇪
big-cloud.nl
2026-09-21 09:53:22
(2 hours ago)
Try to access /.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 09:37:00
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 05:36:55.186688 2026] [security2:error] [pid 4500:tid 4500] [client 130.211.255.225:49608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yellowbrickfoundation.com"] [uri "/.git/config"] [unique_id "arD6t7vC-2rzuwVZEHFgjgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 08:37:54
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 04:37:49.861005 2026] [security2:error] [pid 7339:tid 7339] [client 130.211.255.225:49222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caribeanvacationsturs.com"] [uri "/.git/config"] [unique_id "arDs3UOnoJmH3W_mcjXiIgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 08:17:04
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 04:16:56.612575 2026] [security2:error] [pid 8822:tid 8822] [client 130.211.255.225:60228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whodatnation.com"] [uri "/.git/config"] [unique_id "arDn-OeyjX6icjk6Zl_hDgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-21 08:05:21
(4 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
Anonymous
2026-09-21 08:03:13
(4 hours ago)
Web scanner: GET /.git/config
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-21 06:44:54
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 02:44:50.633709 2026] [security2:error] [pid 16867:tid 16892] [client 130.211.255.225:42946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yakamengen.com"] [uri "/.git/config"] [unique_id "arDSYp9sGLlfFukW7x0IowAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 06:27:31
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 02:27:26.365291 2026] [security2:error] [pid 16301:tid 16301] [client 130.211.255.225:34320] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "walkbikerunsafelymarcoisland.org"] [uri "/.git/config"] [unique_id "arDOTnFgiRQs7tkmTvPJrQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 05:52:56
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 130.211.255.225 (225.255.211.130.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 01:52:52.741685 2026] [security2:error] [pid 18634:tid 18634] [client 130.211.255.225:45664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solutiongroove.com"] [uri "/.git/config"] [unique_id "arDGNLBIFm26bZFO_bRwTAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack