๐ฉ๐ช
mravb
2026-09-29 12:09:39
(11 hours ago)
8.231.95.29 - - [29/Sep/2026:15:09:39 +0300] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 (M ...
show more
8.231.95.29 - - [29/Sep/2026:15:09:39 +0300] "GET /.git/config HTTP/1.1" 403 180 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐ฉ๐ช
4server
2026-09-28 02:24:27
(1 day ago)
[MonSep2804:24:23.0852482026][security2:error][pid241563:tid241678][client8.231.95.29:0]ModSecurity: ...
show more
[MonSep2804:24:23.0852482026][security2:error][pid241563:tid241678][client8.231.95.29:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"aaaa6877.org\"][uri\"/.git/config\"][unique_id\"arnP1xqLDgb1TMTrzShRPgAAAQY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:52:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:52:25.930510 2026] [security2:error] [pid 13158:tid 13158] [client 8.231.95.29:60980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sicktracks.com"] [uri "/.git/config"] [unique_id "arlz-cCGlalVZn1_REyjFQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:34:48
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:34:43.894220 2026] [security2:error] [pid 6985:tid 6985] [client 8.231.95.29:52222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.siciliafamily.com"] [uri "/.git/config"] [unique_id "arlv0zDESPok-Eo_dlRluwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 15:08:27
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 11:08:24.015325 2026] [security2:error] [pid 7817:tid 7817] [client 8.231.95.29:46656] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mainescentsecrets.com"] [uri "/.git/config"] [unique_id "arff6IGyWlyBD1N33S9krgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-09-26 09:52:06
(3 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-25 18:56:17
(4 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-25 01:50:06
(4 days ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:49:11
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:49:04.825077 2026] [security2:error] [pid 24509:tid 24509] [client 8.231.95.29:48974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.joepeters.org"] [uri "/.git/config"] [unique_id "arVwoM8sQzUQXEP8wq_vUQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 18:10:06
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 14:09:58.211410 2026] [security2:error] [pid 15241:tid 15241] [client 8.231.95.29:51328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jimmyshakes.org"] [uri "/.git/config"] [unique_id "arVndmOz-agnOfvt5bn30AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-24 17:39:36
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.95.29 (29.95.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 24 13:39:30.467432 2026] [security2:error] [pid 11379:tid 11379] [client 8.231.95.29:58980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jesusthechristministry.org"] [uri "/.git/config"] [unique_id "arVgUlb-C7Ld0Yar99YB8AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-22 11:07:22
(1 week ago)
Date: 2026/09/22 20 07 23
URI: http://adelabelly.com/.env
Web App Attack
๐ฎ๐น
VHosting
2026-09-20 15:50:04
(1 week ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack