Anonymous
2026-09-25 23:17:32
(1 day ago)
136.108.30.14 - - [25/Sep/2026:20:17:31 -0300] "GET /.git/config HTTP/1.1" 403 118 "-" "-"
...
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐ซ๐ฎ
kumiko
2026-09-25 23:13:37
(1 day ago)
[2026-09-26 02:13:37] Probing for dotfiles
"GET /.git/config HTTP/1.1" 403
Bad Web Bot
Web App Attack
Anonymous
2026-09-25 22:43:06
(1 day ago)
sensitive path probe detected by fail2ban
...
Port Scan
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-25 22:35:57
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 136.108.30.14 (US/United States/14.30.108.136.b ...
show more
(mod_security) mod_security (id:949110) triggered by 136.108.30.14 (US/United States/14.30.108.136.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 22:32:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 18:32:27.914614 2026] [security2:error] [pid 1550:tid 1550] [client 136.108.30.14:53844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.skintormint.com"] [uri "/.git/config"] [unique_id "arb2e1GbYSZ7YH2JjZntHQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-25 22:26:02
(1 day ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-25 22:15:14
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 22:02:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 18:02:19.526477 2026] [security2:error] [pid 23032:tid 23032] [client 136.108.30.14:42544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.shtondo.com"] [uri "/.git/config"] [unique_id "arbva1z0rgGquJo7953TbQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ท
setupgr
2026-09-25 21:32:54
(1 day ago)
(mod_security) mod_security (id:11000011) triggered by 136.108.30.14 (US/United States/South Carolin ...
show more
(mod_security) mod_security (id:11000011) triggered by 136.108.30.14 (US/United States/South Carolina/North Charleston/-/[AS396982 Google LLC]): 1 in the last 86400 secs (CF_ENABLE); Ports: *; Direction: inout; Trigger: LF_MODSEC; Logs: [Sat Sep 26 00:32:53.617846 2026] [security2:error] [pid 267016:tid 267049] [client 136.108.30.14:33232] ModSecurity: Access denied with code 406 (phase 1). Matched phrase "googleusercontent.com" at REMOTE_HOST. [file "/etc/apache2/conf.d/modsec/modsec2.user.conf"] [line "141"] [id "11000011"] [msg "BLOCKED BAD DOMAIN: 14.30.108.136.bc.googleusercontent.com"] [severity "CRITICAL"] [hostname "mail.setworldup365.com"] [uri "/.git/config"] [unique_id "arbohXL7NkNOBplCQ2LuIwAAAUY"]
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-25 21:31:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:31:37.243221 2026] [security2:error] [pid 22100:tid 22100] [client 136.108.30.14:47504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.seshafting.com"] [uri "/.git/config"] [unique_id "arboObjr8zNgKMfqjuDfTQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-25 21:07:04
(1 day ago)
Http Port:80 (http_status:403) - Agent:-
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 21:05:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:04:58.805998 2026] [security2:error] [pid 21647:tid 21647] [client 136.108.30.14:39634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.serranoscoffee.com"] [uri "/.git/config"] [unique_id "arbh-qAcNqKxWxG_T575dAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
seniorlinuxadmin
2026-09-25 20:57:15
(1 day ago)
136.108.30.14 - - [25/Sep/2026:21:57:13 +0100] "GET /.git/config HTTP/1.1" 403 158 "-" "-"
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 20:42:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.108.30.14 (14.30.108.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 16:42:34.417861 2026] [security2:error] [pid 25478:tid 25478] [client 136.108.30.14:44940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.secuencia.com"] [uri "/.git/config"] [unique_id "arbcukee-EQHRH_6o3EWngAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-25 20:42:35
(1 day ago)
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 136 ...
show more
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 136.108.30.14 - - \[25/Sep/2026:22:42:34 +0200\] "GET /.git/config HTTP/1.1" 404 5823 "-" "-"
...
show less
Bad Web Bot
Web App Attack