🇺🇸
TPI-Abuse
2026-09-07 19:19:02
(51 minutes ago)
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:18:57.277176 2026] [security2:error] [pid 8969:tid 8969] [client 8.229.188.255:49396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amgtr.com"] [uri "/.git/config"] [unique_id "ap8OITWCsREd6Av6lQ0xOwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
BlueWire Hosting
2026-09-07 19:10:58
(59 minutes ago)
High-confidence malicious configuration/VCS probe
Web App Attack
🇺🇸
mnsf
2026-09-07 19:05:22
(1 hour ago)
Abuse Detected (9)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:02:31
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:02:26.192791 2026] [security2:error] [pid 10306:tid 10306] [client 8.229.188.255:46558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americanureport.com"] [uri "/.git/config"] [unique_id "ap8KQqu6LyCUqfwGIWoJygAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 18:46:39
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:46:33.300481 2026] [security2:error] [pid 20709:tid 20709] [client 8.229.188.255:39056] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americanacademyofteachersofsinging.org"] [uri "/.git/config"] [unique_id "ap8Giac0VwFsQK4Yo9mhSQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
2000cn.com.au
2026-09-07 18:43:38
(1 hour ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-07 18:31:21
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 14:31:17.178763 2026] [security2:error] [pid 3965:tid 3987] [client 8.229.188.255:34488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amd64world.crowns.org"] [uri "/.git/config"] [unique_id "ap8C9Qb4a8TYIOoj7pn6xgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
big-cloud.nl
2026-09-07 18:07:01
(2 hours ago)
Try to access /.git/config
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:54:17
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:54:11.634758 2026] [security2:error] [pid 14427:tid 14427] [client 8.229.188.255:44828] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amazingerection.amazingwelding.com"] [uri "/.git/config"] [unique_id "ap76Q3NkmeqgwNka2hxB7QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
cmbplf
2026-09-07 17:39:14
(2 hours ago)
413 requests with url.path */.git/config
125 requests with url.path *.git/*
Brute-Force
Bad Web Bot
Anonymous
2026-09-07 17:33:30
(2 hours ago)
[ns31.kdns.gr] httpd-config-scan: sites=www.amarilis.gr; logs=/var/log/httpd/domains/amarilis.gr.log ...
show more
[ns31.kdns.gr] httpd-config-scan: sites=www.amarilis.gr; logs=/var/log/httpd/domains/amarilis.gr.log; samples=/.git/config
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:22:47
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:949110) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:22:44.517845 2026] [security2:error] [pid 305:tid 305] [client 8.229.188.255:39984] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "amandawallace.org"] [uri "/.git/config"] [unique_id "ap7y5AGWUtMBaCEk7CpnJwAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
jkhorvath.com
2026-09-07 17:07:43
(3 hours ago)
Request for URL /.git/config
Phishing
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 17:03:11
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 8.229.188.255 (255.188.229.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 13:03:06.559387 2026] [security2:error] [pid 17558:tid 17560] [client 8.229.188.255:58274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alzooma.maxelon.com"] [uri "/.git/config"] [unique_id "ap7uSvGcGp6BlN-N73tLiwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Aetherweb Ark
2026-09-07 17:00:52
(3 hours ago)
(mod_security) mod_security (id:949110) triggered by 8.229.188.255 (US/United States/255.188.229.8.b ...
show more
(mod_security) mod_security (id:949110) triggered by 8.229.188.255 (US/United States/255.188.229.8.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack