๐ซ๐ท
masterguru
2026-09-03 07:27:53
(21 minutes ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 07:08:31
(41 minutes ago)
(mod_security) mod_security (id:210730) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210730) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 03:08:22.551450 2026] [security2:error] [pid 32641:tid 32641] [client 35.194.245.125:34636] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.capitalswisscorp.usaangelinvestors.com|F|2"] [data ".env.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.capitalswisscorp.usaangelinvestors.com"] [uri "/.env.bak"] [unique_id "apkc5h6F2LoVTI9KkabcWAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 06:29:32
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 02:29:25.318528 2026] [security2:error] [pid 29030:tid 29030] [client 35.194.245.125:53058] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.capitallawgroup.progressivefileshare.org"] [uri "/.git/config"] [unique_id "apkTxQVIj_Jx0JzX-a3FrQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 05:20:23
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 01:20:20.120917 2026] [security2:error] [pid 31912:tid 31912] [client 35.194.245.125:32804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.capitalacc.anthonyanimalclinic.net"] [uri "/.git/config"] [unique_id "apkDlKaBTxjADXQI6TzIPQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-09-03 04:51:29
(2 hours ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐ฌ๐ง
consul.to
2026-09-03 04:31:47
(3 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-03 04:24:43
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.194.245.125 (125.245.194.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 00:24:38.434682 2026] [security2:error] [pid 21201:tid 21201] [client 35.194.245.125:48672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.capestfrancistransfers.jbaycabs.com"] [uri "/.git/config"] [unique_id "apj2him8b2-zXtUDBe1RcwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-09-03 04:16:57
(3 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env (+1 more) | 2026-09-03 04:16 UTC
show less
Hacking
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-03 04:08:48
(3 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-03 03:55:33
(3 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-03 03:50:18
(3 hours ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack
๐ซ๐ท
COMAITE
2026-09-03 01:57:36
(5 hours ago)
Suspicious URL access.
Web App Attack
๐จ๐ฆ
Dunham Support
2026-09-02 22:49:22
(9 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.194.245.125 (TW/Taiwan/125.245.194.3 ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.194.245.125 (TW/Taiwan/125.245.194.35.bc.googleusercontent.com)
show less
SQL Injection
๐ณ๐ฑ
enpepet
2026-09-02 22:06:59
(9 hours ago)
GENERAL: parametres: [url:git=] UA:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHT ...
show more
GENERAL: parametres: [url:git=] UA:Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 URL:/.git/config
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-09-02 21:59:43
(9 hours ago)
Auto-ban: >3000 req/min op 2026-09-02
Web App Attack
SSH
Hacking