๐ณ๐ด
jad-abuse
2026-07-28 14:37:03
(24 minutes ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐ฉ๐ช
Lino Project
2026-07-28 14:03:04
(58 minutes ago)
35.231.78.58 - - [28/Jul/2026:16:03:00 +0200] "GET /.git/config HTTP/1.1" 403 5487 "-" "-"
...
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 13:58:07
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 09:57:59.928391 2026] [security2:error] [pid 2084308:tid 2084308] [client 35.231.78.58:54430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tradersworldmarket.com"] [uri "/.git/config"] [unique_id "ami1Z5Qz1G01y79-Tbet8wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-28 13:52:42
(1 hour ago)
35.231.78.58 - - [28/Jul/2026:16:42:44 +0300] "GET /.git/config HTTP/1.1" 404 4690 "-" "-"
35.231.78 ...
show more
35.231.78.58 - - [28/Jul/2026:16:42:44 +0300] "GET /.git/config HTTP/1.1" 404 4690 "-" "-"
35.231.78.58 - - [28/Jul/2026:16:52:39 +0300] "GET /.git/config HTTP/1.1" 404 4691 "-" "-"
...
show less
Web App Attack
๐ซ๐ฎ
cleverest.eu
2026-07-28 13:52:04
(1 hour ago)
MimirWAF has 1 incident from 1 distinct domain => {"bad_request_uri / vcs_probe"}
Web App Attack
๐บ๐ธ
SX Communications
2026-07-28 13:48:33
(1 hour ago)
Web vulnerability scanning / probing from 35.231.78.58: automated requests for CMS admin paths, logi ...
show more
Web vulnerability scanning / probing from 35.231.78.58: automated requests for CMS admin paths, login endpoints, xmlrpc, and common scanner fingerprints over HTTPS. 1 hits; paths: /.git/config.
show less
Port Scan
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 13:40:05
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 09:39:58.306358 2026] [security2:error] [pid 1114678:tid 1114678] [client 35.231.78.58:34892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wryemusings.com"] [uri "/.git/config"] [unique_id "amixLqHu3tAk02kb1d18cAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-07-28 13:37:24
(1 hour ago)
Web attack from 35.231.78.58
Web App Attack
๐ฑ๐ป
garmtech.com
2026-07-28 13:31:52
(1 hour ago)
IM360 WAF: Direct access to sensitive file or dotfile MV:/.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 13:23:07
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 09:23:02.944942 2026] [security2:error] [pid 3734711:tid 3735128] [client 35.231.78.58:34428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.exede-sales.com"] [uri "/.git/config"] [unique_id "amitNkwcEvK1dSjr8mEM8wAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-07-28 13:20:17
(1 hour ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.231.78.58 (US/United States/58.7 ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 35.231.78.58 (US/United States/58.78.231.35.bc.googleusercontent.com): 1 in the last 3600 secs
show less
Web App Attack
๐ซ๐ฎ
Erpelstolz
2026-07-28 13:17:42
(1 hour ago)
external host: 35.231.78.58 - - [28/Jul/2026:15:17:42 +0200] "GET /.git/config HTTP/1.1" 403 5605 "- ...
show more
external host: 35.231.78.58 - - [28/Jul/2026:15:17:42 +0200] "GET /.git/config HTTP/1.1" 403 5605 "-" "-" CF-Ray:- CF-IP:-
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 13:08:02
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.231.78.58 (58.78.231.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 09:07:56.266069 2026] [security2:error] [pid 1818822:tid 1818822] [client 35.231.78.58:38414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.greenmountainfeeds.com"] [uri "/.git/config"] [unique_id "amiprGrYgeMQldfaYBLwNwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-07-28 13:05:41
(1 hour ago)
Abuse Detected (15)
Brute-Force
Web App Attack
Anonymous
2026-07-28 13:00:01
(2 hours ago)
suspicious request in access.log
Web App Attack