๐บ๐ธ
jkhorvath.com
2026-08-27 23:57:51
(4 hours ago)
Request for URL /htdocs/.git/config
Phishing
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:00:32
(6 hours ago)
Auto-ban: >3000 req/min op 2026-08-27
Web App Attack
SSH
Hacking
๐ธ๐ช
peterh
2026-08-27 21:41:00
(6 hours ago)
35.228.74.18 - - [27/Aug/2026:22:02:09 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 438 "-" "cru ...
show more
35.228.74.18 - - [27/Aug/2026:22:02:09 +0200] "GET /wordpress/.git/config HTTP/1.1" 404 438 "-" "crusader-worker/1.0"
show less
Bad Web Bot
Web App Attack
Phishing
Hacking
๐ณ๐ฑ
e.fierstra
2026-08-27 18:59:00
(9 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 17:53:41
(10 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:27:45
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:27:40.971211 2026] [security2:error] [pid 13483:tid 13483] [client 35.228.74.18:54082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "finewebdining.com"] [uri "/html/.git/config"] [unique_id "apBlfAEL9IuqMcKW0qARCAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:28:28
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:28:21.373516 2026] [security2:error] [pid 22698:tid 22698] [client 35.228.74.18:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdn-2.socialstudiesforkids.com"] [uri "/app/.git/config"] [unique_id "apAfVeJuZOYQSUvwPTqd6QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-27 11:28:02
(16 hours ago)
[ThuAug2713:27:58.9380102026][security2:error][pid1098346:tid1098401][client35.228.74.18:0]ModSecuri ...
show more
[ThuAug2713:27:58.9380102026][security2:error][pid1098346:tid1098401][client35.228.74.18:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"gmint.ch\"][uri\"/www/.git/config\"][unique_id\"apAfPmI4yQ-48UlqZqsn4gAAAFI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
grassau.com
2026-08-27 07:05:35
(21 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 35.228.74.18 (FI/Finland/South Karelia ...
show more
(mod_security) mod_security triggered on hostname [redacted] 35.228.74.18 (FI/Finland/South Karelia Region/Lappeenranta/18.74.228.35.bc.googleusercontent.com)
show less
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-27 06:28:01
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:27:57.646369 2026] [security2:error] [pid 322:tid 322] [client 35.228.74.18:40236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kathyquan.homehealth101.com"] [uri "/.git/config"] [unique_id "ao_Y7QXZQS8aVk_K-QRVZwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 03:50:00
(1 day ago)
suspicious request in access.log
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-27 03:35:02
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 03:11:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.228.74.18 (18.74.228.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:11:14.343662 2026] [security2:error] [pid 8577:tid 8583] [client 35.228.74.18:32880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rightnews.org"] [uri "/app/.git/config"] [unique_id "ao-q0tO7LrYgHfe33d_NVAAAAQQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-08-27 02:59:05
(1 day ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
๐ง๐ช
voormedia
2026-08-27 00:08:54
(1 day ago)
Accessed trap at '/.git/config'
Web App Attack