Anonymous
2026-09-04 21:29:56
(33 minutes ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:28:51
(34 minutes ago)
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:28:47.557724 2026] [security2:error] [pid 2591:tid 2591] [client 35.241.88.128:41676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.dentistholidaycards.com"] [uri "/.git/config"] [unique_id "aps4DxVZTYkcDU-1GqpusgAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:54:14
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:54:10.382915 2026] [security2:error] [pid 13505:tid 13505] [client 35.241.88.128:38792] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dreamingofatlantis.com"] [uri "/public/.git/config"] [unique_id "apsv8pHjdCwMxBoNry-JNwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 14:27:43
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 10:27:38.793279 2026] [security2:error] [pid 19894:tid 19894] [client 35.241.88.128:33562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "upload.opere.com"] [uri "/wordpress/.git/config"] [unique_id "aprVWoRV6YuYxSK__W254QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:56:06
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:56:00.420547 2026] [security2:error] [pid 2824998:tid 2825084] [client 35.241.88.128:51956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.geekmd.org"] [uri "/htdocs/.git/config"] [unique_id "apqx0A1OtXLqWHx1GpHDsgAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Skyrider
2026-09-04 11:24:28
(10 hours ago)
Nginx: HTTP 4xx probe/scan attempts. Automated fail2ban report.
Bad Web Bot
Web App Attack
🇺🇸
Charlesiv
2026-09-04 08:03:16
(14 hours ago)
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from HK.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /backend/.git/config
Timestamp: 2026-09-04T06:24:02Z
Ray ID: a35ae8acc8fcafed
UA: crusader-worker/1.0
show less
Bad Web Bot
🇩🇪
seal
2026-09-04 06:58:31
(15 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
SSH
Brute-Force
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 05:09:15
(16 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 04:33:08
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.241.88.128 (128.88.241.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 00:33:00.253345 2026] [security2:error] [pid 23369:tid 23369] [client 35.241.88.128:58356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.pinebrookdesign.com"] [uri "/var/www/.git/config"] [unique_id "appJ_DwwOO-xsibHMQydqgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
consul.to
2026-09-04 01:58:26
(20 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-09-04 00:09:54
(21 hours ago)
[server.tmg.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/wordpress/.git/config | ...
show more
[server.tmg.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/wordpress/.git/config | /app/.git/config | /var/www/.git/config
show less
Hacking
Web App Attack
Anonymous
2026-09-03 22:35:02
(23 hours ago)
suspicious request in access.log
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-03 22:00:29
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
🇫🇮
paissangroup
2026-09-03 20:03:54
(1 day ago)
Multiple WAF Violations
Web App Attack