๐บ๐ธ
TPI-Abuse
2026-09-03 15:50:39
(2 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:50:32.607113 2026] [security2:error] [pid 22176:tid 22176] [client 35.185.19.70:11500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "campconcerto.com"] [uri "/.git/config"] [unique_id "apmXSE8W2ptl7gNphkaCDwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 15:37:04
(15 minutes ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 15:34:58
(17 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:34:51.181709 2026] [security2:error] [pid 18499:tid 18499] [client 35.185.19.70:19094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bicaco.com"] [uri "/.git/config"] [unique_id "apmTm_7VvpfN4jLCSh-aXQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 15:17:47
(35 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 11:17:42.186179 2026] [security2:error] [pid 27677:tid 27677] [client 35.185.19.70:42482] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aroilcontrolsystem.com"] [uri "/.git/config"] [unique_id "apmPlluMmZgTXCePNA4KHQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
TechnoSolutions CL
2026-09-03 15:15:36
(37 minutes ago)
35.185.19.70 - - [03/Sep/2026:15:15:35 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Wi ...
show more
35.185.19.70 - - [03/Sep/2026:15:15:35 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
35.185.19.70 - - [03/Sep/2026:15:15:35 +0000] "GET /.git/config HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-09-03 15:08:21
(44 minutes ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
Kreapptivo
2026-09-03 14:56:00
(56 minutes ago)
[03/Sep/2026:16:55:59 +0200] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Windows NT 1 ...
show more
[03/Sep/2026:16:55:59 +0200] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 09:46:21
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 05:46:15.226473 2026] [security2:error] [pid 19070:tid 19070] [client 35.185.19.70:63918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "totalstorage.solutions"] [uri "/.git/config"] [unique_id "aplB5_xLXf7sqfYB_UCSzAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-09-03 09:34:23
(6 hours ago)
35.185.19.70 - - [03/Sep/2026:15:04:22 +0530] "GET /.git/config HTTP/1.1" 404 67036 "-" "Mozilla/5.0 ...
show more
35.185.19.70 - - [03/Sep/2026:15:04:22 +0530] "GET /.git/config HTTP/1.1" 404 67036 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
show less
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-03 09:18:57
(6 hours ago)
cloudlinux2 fail2ban: 2026-09-03 11:13:46,713 fail2ban.filter [1472]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-03 11:13:46,713 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.229.65.180 - 2026-09-03 11:13:46cloudlinux2 fail2ban: 2026-09-03 11:13:55,979 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 34.67.93.218 - 2026-09-03 11:13:55cloudlinux2 fail2ban: 2026-09-03 11:13:55,305 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 193.36.225.183 - 2026-09-03 11:13:55cloudlinux2 fail2ban: 2026-09-03 11:13:46,852 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.229.65.180 - 2026-09-03 11:13:46cloudlinux2 fail2ban: 2026-09-03 11:14:04,619 fail2ban.filter [1472]: INFO [plesk-wordpress] Found 172.245.102.40 - 2026-09-03 11:14:04cloudlinux2 fail2ban: 2026-09-03 11:14:05,140 fail2ban.filter [1472]: INFO [recidive] Found 172.245.102.40 - 2026-09-03 11:14:04cloudlinux2 fail2ban: 2026-09-03 11:14:04,866 fail2ban.actions [1472]: NOTICE [plesk-wordpress] Ban 172.245.102.40cloudlinux2 fail2ban: 2026-09-0
show less
Web App Attack
๐บ๐ธ
RH5
2026-09-03 09:12:46
(6 hours ago)
Restricted URL probing (/.git) (UTC 2026-09-03 09:12)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 21:55:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:55:35.852446 2026] [security2:error] [pid 5835:tid 5835] [client 35.185.19.70:26024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "technlunch.blog"] [uri "/.git/config"] [unique_id "apdJ1xHgEUgZXPTrm5-58gAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-01 21:18:29
(1 day ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 21:09:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:09:19.313252 2026] [security2:error] [pid 5291:tid 5291] [client 35.185.19.70:36170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solcargomiami.com"] [uri "/.git/config"] [unique_id "apc-_zURPCfZBRHYND7PYAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 19:19:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.185.19.70 (70.19.185.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:18:55.161775 2026] [security2:error] [pid 26729:tid 26785] [client 35.185.19.70:59630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafmgcc.com"] [uri "/.git/config"] [unique_id "apclH6267NSCeOswjFqG8QAAAck"]
show less
Brute-Force
Bad Web Bot
Web App Attack