๐ฉ๐ช
Marc
2026-09-02 07:31:29
(17 minutes ago)
35.246.235.8 - - [02/Sep/2026:09:31:28 +0200] "GET /html/.git/config HTTP/1.1" 404 4616 "-" "crusade ...
show more
35.246.235.8 - - [02/Sep/2026:09:31:28 +0200] "GET /html/.git/config HTTP/1.1" 404 4616 "-" "crusader-worker/1.0" 35.246.235.8 - - [02/Sep/2026:09:31:28 +0200] "GET /htdocs/.git/config HTTP/1.1" 404 4616 "-" "crusader-worker/1.0" 35.246.235.8 - - [02/Sep/2026:09:31:28 +0200] "GET /backend/.git/config HTTP/1.1" 404 4616 "-" "crusader-worker/1.0"
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-02 06:10:09
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 02:09:58.472028 2026] [security2:error] [pid 19694:tid 19694] [client 35.246.235.8:49498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sharonmauldin.com"] [uri "/htdocs/.git/config"] [unique_id "ape9tpV5us3WQMVxVBpg_wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-02 06:06:37
(1 hour ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-02 05:44:29
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 01:44:24.455117 2026] [security2:error] [pid 6147:tid 6147] [client 35.246.235.8:35218] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.barigby.com"] [uri "/app/.git/config"] [unique_id "ape3uLx5tetQgU1MyUcS9wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 05:29:31
(2 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
SCHAPPY
2026-09-02 05:06:24
(2 hours ago)
Brute-force attack to non-existent web resources, HTTP code 404.
Brute-Force
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-02 05:00:43
(2 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 24 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:59:42
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:59:37.819884 2026] [security2:error] [pid 26012:tid 26077] [client 35.246.235.8:39164] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rodela.com"] [uri "/app/.git/config"] [unique_id "apetOY7luKoJp53Z_vZeiwAAAQc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:33:37
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.246.235.8 (8.235.246.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:33:31.060085 2026] [security2:error] [pid 18948:tid 18948] [client 35.246.235.8:36108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.giganticmediallc.com"] [uri "/site/.git/config"] [unique_id "apenGzvFix9FAxz2-a6o5gAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
kommunos
2026-09-02 00:50:32
(6 hours ago)
/.git/config
Web App Attack
๐ฌ๐ง
consul.to
2026-09-02 00:35:37
(7 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ซ๐ท
dynamix
2026-09-01 22:54:45
(8 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
stinpriza
2026-09-01 22:35:07
(9 hours ago)
common Web Exploits being scanned
Web App Attack
๐ฉ๐ช
lolyay
2026-09-01 20:25:24
(11 hours ago)
35.246.235.8 - - [01/Sep/2026:20:25:23 +0000] "GET /site/.git/config HTTP/1.1" 200 4 "-" "crusader-w ...
show more
35.246.235.8 - - [01/Sep/2026:20:25:23 +0000] "GET /site/.git/config HTTP/1.1" 200 4 "-" "crusader-worker/1.0"
35.246.235.8 - - [01/Sep/2026:20:25:23 +0000] "GET /html/.git/config HTTP/1.1" 200 4 "-" "crusader-worker/1.0"
...
show less
Web App Attack
Bad Web Bot
๐บ๐ฆ
Olexiy Backend
2026-09-01 13:55:34
(17 hours ago)
35.246.235.8
...
Bad Web Bot
Web App Attack