🇺🇸
TPI-Abuse
2026-09-04 07:32:28
(34 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:32:20.577428 2026] [security2:error] [pid 22426:tid 22426] [client 35.196.53.24:52520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "broneksuchanek.com"] [uri "/site/.git/config"] [unique_id "app0BHRPCVleEBZZxyOcZgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-04 07:16:04
(50 minutes ago)
(mod_security) mod_security (id:949110) triggered by 35.196.53.24 (US/United States/24.53.196.35.bc. ...
show more
(mod_security) mod_security (id:949110) triggered by 35.196.53.24 (US/United States/24.53.196.35.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
🇩🇪
Marc
2026-09-04 06:57:26
(1 hour ago)
35.196.53.24 - - [04/Sep/2026:08:57:25 +0200] "GET /html/.git/config HTTP/1.1" 404 4618 "-" "crusade ...
show more
35.196.53.24 - - [04/Sep/2026:08:57:25 +0200] "GET /html/.git/config HTTP/1.1" 404 4618 "-" "crusader-worker/1.0" 35.196.53.24 - - [04/Sep/2026:08:57:25 +0200] "GET /src/.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0" 35.196.53.24 - - [04/Sep/2026:08:57:25 +0200] "GET /.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0"
show less
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 03:52:05
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 23:51:59.732002 2026] [security2:error] [pid 22403:tid 22403] [client 35.196.53.24:33588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fasllc.rooksfamily.com"] [uri "/public/.git/config"] [unique_id "appAX_kk3MaTEwnjYSdTmAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-03 23:36:38
(8 hours ago)
Try to access /app/.git/config
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 22:20:01
(9 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇷🇴
clauss
2026-09-03 22:13:10
(9 hours ago)
35.196.53.24 - - [04/Sep/2026:01:13:09 +0300] "GET /api/.git/config HTTP/2.0" 401 543 "-" "crusader- ...
show more
35.196.53.24 - - [04/Sep/2026:01:13:09 +0300] "GET /api/.git/config HTTP/2.0" 401 543 "-" "crusader-worker/1.0"
35.196.53.24 - - [04/Sep/2026:01:13:09 +0300] "GET /var/www/.git/config HTTP/2.0" 401 543 "-" "crusader-worker/1.0"
...
show less
Web App Attack
🇫🇷
dynamix
2026-09-03 18:17:50
(13 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 18:09:02
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:08:56.327272 2026] [security2:error] [pid 31969:tid 31969] [client 35.196.53.24:60404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "med.garnetcreek.com"] [uri "/src/.git/config"] [unique_id "apm3uOqLIbGFIplziLGxMQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-03 16:18:07
(15 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇬🇧
consul.to
2026-09-03 15:50:09
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-03 12:53:19
(19 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-03 12:34:12
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.196.53.24 (24.53.196.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:34:07.447820 2026] [security2:error] [pid 14556:tid 14556] [client 35.196.53.24:34746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "llaira.com"] [uri "/app/.git/config"] [unique_id "aplpP0cCatQANApK-BSyiwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
masterguru
2026-09-03 10:35:01
(21 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
🇳🇱
Savvii
2026-09-03 07:28:15
(1 day ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack