๐ฉ๐ช
4server
2026-06-09 16:16:55
(2 hours ago)
[TueJun0918:16:53.4857082026][security2:error][pid3167851:tid3167947][client35.245.92.213:0]ModSecur ...
show more
[TueJun0918:16:53.4857082026][security2:error][pid3167851:tid3167947][client35.245.92.213:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"gagspettacolo.ch\"][uri\"/.git/config\"][unique_id\"aig8dVbMlIX-MIcw2t7P0QAAAQA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
Charlesiv
2026-06-09 16:00:37
(2 hours ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Prot ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-06-09T14:39:14Z
Ray ID: a090e270eb59126a
UA: SonyEricssonW810i/R4EA Browser/NetFront/3.3 Profile/MIDP-2.0 Configuration/CLDC-1.1 UP.Link/6.3.0.0.0
show less
Bad Web Bot
Anonymous
2026-06-09 14:40:18
(4 hours ago)
fail2ban: apache-secrets-scan jail (1 hits in 2419200s) on skipper
Web App Attack
Hacking
๐ฉ๐ช
FeG Deutschland
2026-06-09 11:31:54
(7 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
IVski
2026-06-09 09:27:29
(9 hours ago)
IVski WAF | Sensitive file probe detected - looking for .git
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 09:02:58
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 05:02:53.636399 2026] [security2:error] [pid 2494:tid 2494] [client 35.245.92.213:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.luisguacache.com"] [uri "/.git/config"] [unique_id "aifWvS2c8a20114kUhejcwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
langenkamp-media
2026-06-09 08:19:39
(10 hours ago)
Fail2Ban: Banned from jail nginx-nohome on 3dausdu.de
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 08:08:14
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 04:08:10.728990 2026] [security2:error] [pid 25658:tid 25658] [client 35.245.92.213:41702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cedricwillems.com"] [uri "/.git/config"] [unique_id "aifJ6j_LfVwOCaVjdnOcZQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Oakley
2026-06-09 07:41:56
(11 hours ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-09 06:10:06
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 02:09:58.214166 2026] [security2:error] [pid 29204:tid 29204] [client 35.245.92.213:41116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "directcch.com"] [uri "/.git/config"] [unique_id "aieuNqCXczL0GbpIgIM8XwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 05:20:47
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 01:20:40.458808 2026] [security2:error] [pid 12159:tid 12159] [client 35.245.92.213:36772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "enselme.com"] [uri "/.git/config"] [unique_id "aieiqPcosGDHvjDz5_DqLwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 03:45:36
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 23:45:31.241125 2026] [security2:error] [pid 12787:tid 12787] [client 35.245.92.213:51800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.san-marino-marine-consulting.com"] [uri "/.git/config"] [unique_id "aieMW48x_EXwUlXzqTvoqQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
polycoda
2026-06-09 03:28:11
(15 hours ago)
AutoBlock: โ๏ธ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
Anonymous
2026-06-09 03:09:50
(15 hours ago)
35.245.92.213 pi.patrz.eu - [09/Jun/2026:05:09:48 +0200] "GET /.git/config HTTP/1.1" 404 1211 "-" "M ...
show more
35.245.92.213 pi.patrz.eu - [09/Jun/2026:05:09:48 +0200] "GET /.git/config HTTP/1.1" 404 1211 "-" "Mozilla/5.0 (Linux; Android 5.0; ASUS_Z00AD) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.111 Mobile Safari/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-09 02:40:17
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 35.245.92.213 (213.92.245.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 22:40:10.746849 2026] [security2:error] [pid 20135:tid 20712] [client 35.245.92.213:56720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caliokie.com"] [uri "/.git/config"] [unique_id "aid9CnV903O2M8uyYgYm8QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack