๐บ๐ธ
TPI-Abuse
2026-09-01 19:26:06
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:25:59.536228 2026] [security2:error] [pid 27614:tid 27614] [client 35.201.135.19:46710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rentadeandamioscdmx.com"] [uri "/.git/config"] [unique_id "apcmx8OPdKfLKa1HZ1XQdAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 18:33:17
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:33:11.153228 2026] [security2:error] [pid 7190:tid 7190] [client 35.201.135.19:60028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "plasterprose.com"] [uri "/.git/config"] [unique_id "apcaZ46317rlCfuEmBBowAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 08:39:23
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 04:39:18.017051 2026] [security2:error] [pid 20367:tid 20367] [client 35.201.135.19:63056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lucid-events.com"] [uri "/.git/config"] [unique_id "apaPNpnyo6Qe14_0AT7UTwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-09-01 06:30:59
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
big-cloud.nl
2026-09-01 05:23:57
(1 day ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 05:13:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 01:13:19.090000 2026] [security2:error] [pid 18337:tid 18337] [client 35.201.135.19:59280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cs-mall.com"] [uri "/.git/config"] [unique_id "apZe77MpQxhcRuDkiorAhgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 01:55:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 21:55:46.751888 2026] [security2:error] [pid 6225:tid 6225] [client 35.201.135.19:19734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abilityengraving.com"] [uri "/.git/config"] [unique_id "apYwojSvtKlktct_mkoBagAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-31 19:30:48
(1 day ago)
[MonAug3121:30:43.4492922026][security2:error][pid4122893:tid4123128][client35.201.135.19:0]ModSecur ...
show more
[MonAug3121:30:43.4492922026][security2:error][pid4122893:tid4123128][client35.201.135.19:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"xn--sanierung-alter-huser-schweiz-hqc.ch\"][uri\"/.git/config\"][unique_id\"apXWY38OUWs1KszfWtOX7gAAAQY\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 18:09:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 14:09:23.432533 2026] [security2:error] [pid 10122:tid 10122] [client 35.201.135.19:12870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tunabay.com"] [uri "/.git/config"] [unique_id "apXDU5nJ-R1_NxwYjVX3sAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
SodaAudit.app
2026-08-31 15:35:48
(1 day ago)
[sodaaudit.app] Web app attack. Timestamp: 2026-08-31T09:32:08.000Z. 1 probe events, 1 distinct path ...
show more
[sodaaudit.app] Web app attack. Timestamp: 2026-08-31T09:32:08.000Z. 1 probe events, 1 distinct path(s). Paths (payload): /.git/config
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 14:59:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:59:05.987890 2026] [security2:error] [pid 1994:tid 1994] [client 35.201.135.19:57284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "piments.com"] [uri "/.git/config"] [unique_id "apWWuSbNJhHwBsM7fF_QkgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 09:45:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:45:13.858390 2026] [security2:error] [pid 24968:tid 25025] [client 35.201.135.19:61676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "epstransparency.org"] [uri "/.git/config"] [unique_id "apVNKQZV8NBXm99W61t9LgAAAEQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ฐ
ScamAware
2026-08-31 04:54:50
(2 days ago)
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show more
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 1. Unique request paths counted internally: 1. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Web App Attack
Anonymous
2026-08-31 04:34:20
(2 days ago)
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 00:02:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.135.19 (19.135.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 20:02:24.132174 2026] [security2:error] [pid 3240141:tid 3240238] [client 35.201.135.19:14966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eadweb.com"] [uri "/.git/config"] [unique_id "apTEkLFULgoX57KyQ4pYEQAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack