🇫🇷
Baking333
2026-08-27 22:40:11
(1 day ago)
[redacted] 35.228.229.97 - - [27/Aug/2026:23:40:08 +0100] "GET /public/.git/config HTTP/1.1" 307 569 ...
show more
[redacted] 35.228.229.97 - - [27/Aug/2026:23:40:08 +0100] "GET /public/.git/config HTTP/1.1" 307 5690 "-" "crusader-worker/1.0" [redacted] 35.228.229.97 - - [27/Aug/2026:23:40:08 +0100] "GET /www/.git/config HTTP/1.1" 307 5690 "-" "crusader-worker/1.0"
show less
Bad Web Bot
Web App Attack
🇧🇾
lns.bz
2026-08-27 21:26:42
(1 day ago)
Too many 404 requests [BY]
Web App Attack
🇩🇪
iNetWorker
2026-08-27 19:14:00
(1 day ago)
trolling for resource vulnerabilities
Web App Attack
🇸🇪
vaia.cloud
2026-08-27 17:10:01
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇩🇪
MaxMeier
2026-08-27 15:12:16
(2 days ago)
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /.git/config HTTP/1.1" 400 230 "-" "crusader-wor ...
show more
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /www/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /public/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /wordpress/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /app/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /htdocs/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /site/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
35.228.229.97 - - [27/Aug/2026:17:11:34 +0200] "GET /html/.git/config HTTP/1.1" 400 230 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 14:53:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:53:11.494846 2026] [security2:error] [pid 3491:tid 3491] [client 35.228.229.97:46484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "home.agingworkforcenews.com"] [uri "/www/.git/config"] [unique_id "apBPV56dEI2PfozFWsPGfgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-08-27 12:57:21
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-08-27 12:48:38
(2 days ago)
[ns31.kdns.gr] httpd-config-scan: sites=www.esperohotel.gr; logs=/var/log/httpd/domains/esperohotel. ...
show more
[ns31.kdns.gr] httpd-config-scan: sites=www.esperohotel.gr; logs=/var/log/httpd/domains/esperohotel.gr.log; samples=/src/.git/config | /api/.git/config | /public/.git/config
show less
Hacking
Web App Attack
🇩🇪
Marc
2026-08-27 10:14:34
(2 days ago)
35.228.229.97 - - [27/Aug/2026:12:14:34 +0200] "GET /app/.git/config HTTP/1.1" 404 4617 "-" "crusade ...
show more
35.228.229.97 - - [27/Aug/2026:12:14:34 +0200] "GET /app/.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0" 35.228.229.97 - - [27/Aug/2026:12:14:34 +0200] "GET /.git/config HTTP/1.1" 404 4618 "-" "crusader-worker/1.0" 35.228.229.97 - - [27/Aug/2026:12:14:34 +0200] "GET /src/.git/config HTTP/1.1" 404 4617 "-" "crusader-worker/1.0"
show less
Brute-Force
🇫🇷
masterguru
2026-08-27 08:37:22
(2 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.228.229.97 (FI/Finland/97.229.228. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.228.229.97 (FI/Finland/97.229.228.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
🇩🇪
mygcode.de
2026-08-27 08:07:10
(2 days ago)
Scanning for Exploits
Bad Web Bot
🇺🇸
TPI-Abuse
2026-08-27 06:49:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:49:07.292956 2026] [security2:error] [pid 24261:tid 24284] [client 35.228.229.97:39504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.colinkyffinmusic.com"] [uri "/wordpress/.git/config"] [unique_id "ao_d4zoSW8RbEUnXBzappAAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 06:04:56
(2 days ago)
Probing\(3\) HTTP Ports
...
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 05:03:27
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:03:18.880667 2026] [security2:error] [pid 20735:tid 20735] [client 35.228.229.97:57936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.maeandtheguys.com"] [uri "/htdocs/.git/config"] [unique_id "ao_FFgMOQVAR3fD6l_MENwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-27 04:41:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.229.97 (97.229.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:41:46.384392 2026] [security2:error] [pid 21684:tid 21684] [client 35.228.229.97:39030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globalaccessau.com.salsberggroup.com"] [uri "/backend/.git/config"] [unique_id "ao_AClygAcmI7Ga_YOWDcAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack