๐ซ๐ท
masterguru
2026-09-02 06:15:41
(1 hour ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐ฆ๐บ
clapper
2026-09-02 05:57:25
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.238.41.228 (US/United States/228.41.238.35.b ...
show more
(mod_security) mod_security (id:949110) triggered by 35.238.41.228 (US/United States/228.41.238.35.bc.googleusercontent.com): 3 in the last 3600 secs; ID: LUC
show less
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-02 05:50:35
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:50:29.836352 2026] [security2:error] [pid 2197:tid 2197] [client 35.238.41.228:54780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lawrencehale.com"] [uri "/site/.git/config"] [unique_id "ape5JbGbZBueJjPagfIKjwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 05:20:53
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:20:49.610324 2026] [security2:error] [pid 10794:tid 10794] [client 35.238.41.228:39794] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "mail.psqeng.com"] [uri "/public/.git/config"] [unique_id "apeyMa9ggntZNAP4HCU8cAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:58:45
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:58:39.839104 2026] [security2:error] [pid 27643:tid 27643] [client 35.238.41.228:45614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.dreamlikeitmatters.com"] [uri "/site/.git/config"] [unique_id "apes_3B-jsA-QxOkU3rXogAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 04:34:35
(3 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ฌ๐ง
consul.to
2026-09-02 00:07:15
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 21:22:56
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:22:52.129755 2026] [security2:error] [pid 952835:tid 952945] [client 35.238.41.228:56372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "noharm-nofowl.plumeraproductions.com"] [uri "/www/.git/config"] [unique_id "apdCLO1WseMz2c5t0L49AQAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 19:58:54
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 15:58:46.729136 2026] [security2:error] [pid 676:tid 676] [client 35.238.41.228:39024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "danialias.com"] [uri "/www/.git/config"] [unique_id "apcudj8ACGVo0BQHnj7zWQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 14:50:20
(17 hours ago)
Multiple WAF Violations
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-01 14:05:02
(17 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:55:35
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:55:31.258641 2026] [security2:error] [pid 25515:tid 25515] [client 35.238.41.228:41094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "billwegener.net"] [uri "/html/.git/config"] [unique_id "apbZU4hoG2TwYFD1PCudCwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
raph
2026-09-01 13:44:33
(18 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 12:08:05
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.238.41.228 (228.41.238.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 08:08:00.139907 2026] [security2:error] [pid 2029:tid 2029] [client 35.238.41.228:56192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hker.org"] [uri "/api/.git/config"] [unique_id "apbAIIOkiVZXXQ935UvunwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
debestelapp
2026-09-01 12:05:10
(19 hours ago)
Web App Attack