๐บ๐ธ
TPI-Abuse
2026-09-01 18:32:32
(5 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:32:25.490597 2026] [security2:error] [pid 28197:tid 28197] [client 35.229.20.225:49654] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alccontractorsllc.com"] [uri "/.git/config"] [unique_id "apcaOdSdMDDwjvv47PI43gAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-09-01 18:21:30
(16 minutes ago)
[Wed Sep 02 04:21:29.968480 2026] [security2:error] [pid 271867] [client 35.229.20.225:56924] [clien ...
show more
[Wed Sep 02 04:21:29.968480 2026] [security2:error] [pid 271867] [client 35.229.20.225:56924] [client 35.229.20.225] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.com.au"] [uri "/.git/config"] [unique_id "apcXqfR2AFSuAuuBaY3OCQAAAAY"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 18:12:28
(25 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 14:12:21.388467 2026] [security2:error] [pid 26658:tid 26658] [client 35.229.20.225:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shubil.com"] [uri "/.git/config"] [unique_id "apcVhQuQCTRMsTtVWCEYrwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-01 18:05:17
(32 minutes ago)
Abuse Detected (70)
Brute-Force
Web App Attack
๐ฆ๐บ
Bay13
2026-09-01 18:00:32
(37 minutes ago)
CrowdSec:custom/http-sensitive-files
Web App Attack
Anonymous
2026-09-01 17:45:06
(52 minutes ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ซ๐ฎ
YF
2026-09-01 17:30:46
(1 hour ago)
Git config exposure probe
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-01 17:30:15
(1 hour ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.229.20.225 (US/United States/225 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.229.20.225 (US/United States/225.20.229.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 17:22:05
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 13:21:57.548499 2026] [security2:error] [pid 24321:tid 24321] [client 35.229.20.225:54338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "styxwetworld.com"] [uri "/.git/config"] [unique_id "apcJtX6GYzCTgygiNinLeQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-01 17:05:23
(1 hour ago)
Abuse Detected (68)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 16:50:55
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 12:50:46.527940 2026] [security2:error] [pid 29037:tid 29037] [client 35.229.20.225:58990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "itre.org"] [uri "/.git/config"] [unique_id "apcCZoHVC52B29BsdBdsowAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-09-01 16:35:44
(2 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ง๐ฌ
gurnip
2026-09-01 16:34:12
(2 hours ago)
Vulnerability probe of page /.git/config, not found on the server.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 16:24:20
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 12:24:16.222134 2026] [security2:error] [pid 12704:tid 12704] [client 35.229.20.225:60316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coolwebsites.org"] [uri "/.git/config"] [unique_id "apb8MLlPG7ZuSeATZQtlagAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 16:04:03
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.20.225 (225.20.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 12:03:56.234403 2026] [security2:error] [pid 30782:tid 30782] [client 35.229.20.225:46268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gmacguffin.com"] [uri "/.git/config"] [unique_id "apb3bF7rwCUjRcbvEVLd4AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack