๐ซ๐ท
dynamix
2026-08-27 22:57:45
(2 hours ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:01:15
(3 hours ago)
Auto-ban: >3000 req/min op 2026-08-27
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 17:38:11
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:38:05.193118 2026] [security2:error] [pid 2255:tid 2255] [client 35.199.85.237:49266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boens.org"] [uri "/htdocs/.git/config"] [unique_id "apB1_RcgxBcXknMXaYQXSQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 15:12:44
(10 hours ago)
[ns41.kdns.gr] httpd-config-scan: sites=www.monastiria.gr; logs=/var/log/httpd/domains/monastiria.gr ...
show more
[ns41.kdns.gr] httpd-config-scan: sites=www.monastiria.gr; logs=/var/log/httpd/domains/monastiria.gr.log; samples=/htdocs/.git/config | /.git/config | /app/.git/config
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:57:28
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:57:19.533963 2026] [security2:error] [pid 9722:tid 9722] [client 35.199.85.237:35728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jewelcraft.dewsales.com"] [uri "/api/.git/config"] [unique_id "apBQT0Bz84X8gmrMhWWRPQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:47:59
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:47:52.830008 2026] [security2:error] [pid 20833:tid 20923] [client 35.199.85.237:59106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "madring.click.venezuelaguia.com"] [uri "/api/.git/config"] [unique_id "apAHyGB6nzK9v04h_nlOgAAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Bouncer
2026-08-27 09:29:21
(16 hours ago)
(mod_security) mod_security (id:930130) triggered by 35.199.85.237 (BR/Brazil/237.85.199.35.bc.googl ...
show more
(mod_security) mod_security (id:930130) triggered by 35.199.85.237 (BR/Brazil/237.85.199.35.bc.googleusercontent.com): 5 in the last 60 secs
show less
Brute-Force
๐ณ๐ฑ
Savvii
2026-08-27 08:42:21
(17 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:01:37
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.199.85.237 (237.85.199.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:01:28.796605 2026] [security2:error] [pid 24620:tid 24620] [client 35.199.85.237:39176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calentadoresdemexico.com.mx"] [uri "/www/.git/config"] [unique_id "ao_SuEFSgbcLpEZX--ZGxQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-27 05:05:25
(20 hours ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-08-27 04:09:16
(21 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-08-27 03:37:52
(22 hours ago)
Requests to unauthorized or suspicious endpoints (.git, .well-known, .php, etc.)
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-08-27 03:18:22
(22 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-08-27 02:46:16
(22 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-197)
Hacking
Web App Attack
๐ฆ๐บ
electronico
2026-08-27 00:54:20
(1 day ago)
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /api/.git/config HTTP/1.1" 404 5796 "-" "crusade ...
show more
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /api/.git/config HTTP/1.1" 404 5796 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /app/.git/config HTTP/1.1" 404 5796 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /www/.git/config HTTP/1.1" 404 5796 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /backend/.git/config HTTP/1.1" 404 5796 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /.git/config HTTP/1.1" 404 5796 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /src/.git/config HTTP/1.1" 404 5796 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /public/.git/config HTTP/1.1" 404 482 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /html/.git/config HTTP/1.1" 404 482 "-" "crusader-worker/1.0"
35.199.85.237 - - [27/Aug/2026:11:54:19 +1100] "GET /wordpress/.git/config HTTP/1.1" 4
...
show less
Brute-Force
Web App Attack