π³π±
Mangelot Hosting
2026-09-11 15:46:48
(35 minutes ago)
(modsecurity) srv202 ModSecurity 35.241.80.72 (HK/Hong Kong/72.80.241.35.bc.googleusercontent.com): ...
show more
(modsecurity) srv202 ModSecurity 35.241.80.72 (HK/Hong Kong/72.80.241.35.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-11 14:58:07
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 10:58:01.162845 2026] [security2:error] [pid 961:tid 961] [client 35.241.80.72:37508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.statistician.cmabiblequizzing.org"] [uri "/.git/config"] [unique_id "aqQW-QEhkXd6x-AihOM_yQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
JaRoNL
2026-09-11 14:52:07
(1 hour ago)
35.241.80.72 - - [11/Sep/2026:16:52:07 +0200] "GET /.git/config HTTP/1.1" 404 2105 "-" "Mozilla/5.0 ...
show more
35.241.80.72 - - [11/Sep/2026:16:52:07 +0200] "GET /.git/config HTTP/1.1" 404 2105 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-11 13:20:23
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 09:20:19.382946 2026] [security2:error] [pid 3392:tid 3392] [client 35.241.80.72:50426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.statevictoryfund.progressivefileshare.org"] [uri "/.git/config"] [unique_id "aqQAEySASSA4TTYjkwAmjAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-11 12:34:08
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 08:34:04.702451 2026] [security2:error] [pid 3641034:tid 3641034] [client 35.241.80.72:54834] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.statebeach.org.mrcd.org"] [uri "/.git/config"] [unique_id "aqP1PGugnTVW-88PLuHa4QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-11 12:14:29
(4 hours ago)
Excessive multi-domain requests
Brute-Force
π¦πΊ
2000cn.com.au
2026-09-11 12:11:51
(4 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π¬π§
consul.to
2026-09-11 11:59:01
(4 hours ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-11 11:34:23
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 07:34:19.067011 2026] [security2:error] [pid 6245:tid 6264] [client 35.241.80.72:59388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.starwars.onernet.com"] [uri "/.git/config"] [unique_id "aqPnO6VV4j-CQWrWbz64RQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-11 10:56:03
(5 hours ago)
fail2ban jail apache-secrets-probe: startupian.com:443 35.241.80.72 - - [11/Sep/2026:03:56:01 -0700] ...
show more
fail2ban jail apache-secrets-probe: startupian.com:443 35.241.80.72 - - [11/Sep/2026:03:56:01 -0700] "GET /.git/config HTTP/1.1" 301 623 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
show less
Web App Attack
π«π·
masterguru
2026-09-11 10:17:00
(6 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
π©πͺ
FD-IX
2026-09-11 09:25:21
(6 hours ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-11 08:58:24
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:58:21.051541 2026] [security2:error] [pid 10679:tid 10679] [client 35.241.80.72:52176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.start2invent.com.stlouisdave.com"] [uri "/.git/config"] [unique_id "aqPCrYLqhYSlmqHY6wPlrQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
IVski.com
2026-09-11 08:49:16
(7 hours ago)
IVski WAF | Sensitive file probe - looking for exposed .git/config
Hacking
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-11 08:16:44
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.80.72 (72.80.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 11 04:16:37.093571 2026] [security2:error] [pid 4329:tid 4329] [client 35.241.80.72:44580] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.starsmogcheck.smogsandiego.com"] [uri "/.git/config"] [unique_id "aqO45X0Ww4yBYUFQy-ZIzgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack