🇺🇸
Mundo Bueno
2026-09-04 02:37:11
(42 seconds ago)
[ISILIA Protection v2.1] Tentative d'accès: /.git/config | Pays: US | UA: Mozilla/5.0 (Windows NT 10 ...
show more
[ISILIA Protection v2.1] Tentative d'accès: /.git/config | Pays: US | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Sa
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 01:53:31
(44 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:53:24.643633 2026] [security2:error] [pid 12306:tid 12306] [client 35.227.35.122:28964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "designlablra.com"] [uri "/.git/config"] [unique_id "apoklAwRUkmovl_2xs5x0AAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-04 01:05:39
(1 hour ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
jcbriar
2026-09-04 00:55:47
(1 hour ago)
Searching for vulnerable scripts
Hacking
Web App Attack
🇸🇪
SkyDancer
2026-09-04 00:25:49
(2 hours ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
🇷🇴
iulianh
2026-09-03 23:37:33
(3 hours ago)
80,443
Brute-Force
SSH
🇫🇮
YF
2026-09-03 23:00:24
(3 hours ago)
Git config exposure probe
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 22:43:58
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:43:52.406125 2026] [security2:error] [pid 16825:tid 16825] [client 35.227.35.122:21732] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "glassclublake.com"] [uri "/.git/config"] [unique_id "apn4KF9FTiWnhofjuxMvVwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 21:38:02
(4 hours ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
🇳🇴
jad-abuse
2026-09-03 21:23:00
(5 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 20:20:28
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:20:21.013070 2026] [security2:error] [pid 24093:tid 24093] [client 35.227.35.122:19486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "elpais.mx"] [uri "/.git/config"] [unique_id "apnWhRReENg0gaQ_xT9TuAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 20:17:34
(6 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 19:51:22
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.227.35.122 (122.35.227.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:51:19.229434 2026] [security2:error] [pid 22338:tid 22338] [client 35.227.35.122:23530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ggdome.org"] [uri "/.git/config"] [unique_id "apnPt71KjQLc2qBLosZoBwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-03 19:33:56
(7 hours ago)
cloudlinux2 fail2ban: 2026-09-03 21:29:22,675 fail2ban.filter [1472]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-03 21:29:22,675 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.227.101.75 - 2026-09-03 21:29:22cloudlinux2 fail2ban: 2026-09-03 21:29:28,686 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.227.35.122 - 2026-09-03 21:29:28cloudlinux2 fail2ban: 2026-09-03 21:29:44,976 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 207.154.247.228 - 2026-09-03 21:29:44cloudlinux2 fail2ban: 2026-09-03 21:29:45,066 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 207.154.247.228 - 2026-09-03 21:29:45cloudlinux2 fail2ban: 2026-09-03 21:30:10,587 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.184.244.140 - 2026-09-03 21:30:10cloudlinux2 fail2ban: 2026-09-03 21:30:08,435 fail2ban.actions [1472]: NOTICE [plesk-modsecurity] Unban 18.145.7.72cloudlinux2 fail2ban: 2026-09-03 21:30:53,350 fail2ban.filter [1472]: INFO [plesk-modsecurity] Found 35.237.229.237 - 2026-09-03 21:30:53cloudlinux2 f
show less
Web App Attack
🇩🇪
bescared
2026-09-03 19:33:50
(7 hours ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack