๐ฉ๐ช
bazter.pro
2026-09-21 06:31:44
(3 days ago)
Fail2Ban: apache-ratelimit - 20 failures
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 06:01:21
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 02:01:15.472826 2026] [security2:error] [pid 21799:tid 21799] [client 136.109.140.218:41122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.justjunglejuice.org"] [uri "/.env.production"] [unique_id "arDIKyf9hv7fyr6nIDJgswAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 04:30:56
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 00:30:49.975029 2026] [security2:error] [pid 27429:tid 27429] [client 136.109.140.218:35422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.newlifeaccommodation.org"] [uri "/.git/HEAD"] [unique_id "arCy-Wod03HNZfVhL7F39AAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
naveeddaros
2026-09-21 04:20:30
(3 days ago)
HTTP Flood DDoS attack detected
Brute-Force
Bad Web Bot
๐ฟ๐ฆ
conure.sh
2026-09-21 04:08:14
(3 days ago)
csagent: score 20.2: secrets grab x2, 404 noise floor x1; 1 domain(s) in 2s
Web App Attack
๐บ๐ธ
technojoe99
2026-09-21 04:05:36
(3 days ago)
Exploit scan from 136.109.140.218. GET /.git/HEAD HTTP/2.0.
Web App Attack
Anonymous
2026-09-21 04:04:19
(3 days ago)
Blocked by ModSec and CSF
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-21 04:01:24
(3 days ago)
(mod_security) mod_security (id:949110) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:949110) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 00:01:18.864851 2026] [security2:error] [pid 32564:tid 32564] [client 136.109.140.218:53388] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "blog.freedrm.org"] [uri "/.git/HEAD"] [unique_id "arCsDk-lA0iYNtSnAQL30AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
bigscoots.com
2026-09-21 03:30:53
(3 days ago)
(PERMBLOCK) 136.109.140.218 (US/United States/218.140.109.136.bc.googleusercontent.com) has had more ...
show more
(PERMBLOCK) 136.109.140.218 (US/United States/218.140.109.136.bc.googleusercontent.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: 1; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Brute-Force
SSH
Anonymous
2026-09-21 02:10:03
(3 days ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-09-21 01:10:42
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 21:10:35.644883 2026] [security2:error] [pid 21100:tid 21100] [client 136.109.140.218:58558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.adultandchild.org"] [uri "/docker/.env"] [unique_id "arCEC5saTe6G2lRxZl_EBwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:52:31
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:52:26.981590 2026] [security2:error] [pid 23413:tid 23413] [client 136.109.140.218:60412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.supportourlibrary.org"] [uri "/.git/config"] [unique_id "arBxuuD73bkUzxqz9UuhWQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:19:38
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:19:32.381063 2026] [security2:error] [pid 29664:tid 29664] [client 136.109.140.218:45568] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.countylockup.org"] [uri "/.git/HEAD"] [unique_id "arBqBHiB0fKoHl8rDQGeOAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:50:20
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:50:11.975912 2026] [security2:error] [pid 2542:tid 2542] [client 136.109.140.218:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ruralcommunitycare.org"] [uri "/app/.env"] [unique_id "arBjI5mjl5sabOY5RshRYwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 22:20:01
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.140.218 (218.140.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 18:19:53.342065 2026] [security2:error] [pid 32558:tid 32575] [client 136.109.140.218:45334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "writeonce.org"] [uri "/.git/config"] [unique_id "arBcCRWBCD8CsGqSLuqLRQAAAE0"]
show less
Brute-Force
Bad Web Bot
Web App Attack