🇺🇸
TPI-Abuse
2026-09-11 09:35:44
(17 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 05:35:39.039980 2026] [security2:error] [pid 21721:tid 21721] [client 35.195.179.79:43836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genevainvestors.internetnameregistration.com"] [uri "/.git/config"] [unique_id "aqPLazm1VbqwfccTO-yUdgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇿🇦
conure.sh
2026-09-11 09:28:59
(24 minutes ago)
csagent: score 19.9: secrets grab x2; 1 domain(s) in 2s
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 08:29:37
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:29:32.896426 2026] [security2:error] [pid 25414:tid 25414] [client 35.195.179.79:60156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.genesis-group.ggisoftware.com"] [uri "/.git/config"] [unique_id "aqO77CK-Mpdx6V6_TUlrtgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-11 08:15:01
(1 hour ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
🇫🇷
Stara
2026-09-11 08:04:31
(1 hour ago)
ModSecurity detected web attack - .env/config probing or SQLi/Code injection (Rule 949110)
Brute-Force
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 07:33:20
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 03:33:13.011337 2026] [security2:error] [pid 1725:tid 1725] [client 35.195.179.79:58344] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.generationedm.joesteiner.com"] [uri "/.git/config"] [unique_id "aqOuuTlnYdkn-IqS9xCVxgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-11 07:24:57
(2 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-11 07:24 UTC
show less
Hacking
Web App Attack
🇩🇪
EGP Abuse Dept
2026-09-11 07:22:41
(2 hours ago)
Scanning for web/db/file exploits on www.generatiepactmetaalentechniek.nl
SQL Injection
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-11 07:05:00
(2 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 06:33:39
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 02:33:36.472572 2026] [security2:error] [pid 26579:tid 26579] [client 35.195.179.79:50126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.general-electric.pamplonaserviciotecnico.com"] [uri "/.git/config"] [unique_id "aqOgwMCkMpJRuS8a6fvBkAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
Site.eu
2026-09-11 06:25:12
(3 hours ago)
Excessive multi-domain requests
Brute-Force
🇫🇷
dynamix
2026-09-11 06:15:09
(3 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-11 05:59:12
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.195.179.79 (79.179.195.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 01:59:07.847651 2026] [security2:error] [pid 14923:tid 14923] [client 35.195.179.79:37342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gene.plaisance.us"] [uri "/.git/config"] [unique_id "aqOYqx32P_t6Dw21YQYCagAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-11 05:56:40
(3 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇦🇺
2000cn.com.au
2026-09-11 04:32:02
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking