๐ซ๐ท
masterguru
2026-06-16 07:27:16
(23 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
๐ช๐ธ
pipeline.es
2026-06-16 07:17:29
(23 hours ago)
Web scanning / probing for vulnerable paths | URL: /frontend/.git/config | Evidence: landingow.aavv. ...
show more
Web scanning / probing for vulnerable paths | URL: /frontend/.git/config | Evidence: landingow.aavv.com 136.109.65.52 - - [16/Jun/2026:09:16:37 +0200] \"GET /frontend/.git/config HTTP/1.1\" 404 218 \"-\" \"Mozilla/5.0 (Linux; Android 9; Nokia 7.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.121 Mobile Safari/537.36\" GEOIP_COUNTRY_CODE=US | ASN: GOOGLE-CLOUD-PLATFORM | Country: US
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 06:21:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.109.65.52 (52.65.109.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.65.52 (52.65.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 02:21:29.309983 2026] [security2:error] [pid 8621:tid 8621] [client 136.109.65.52:57372] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3905ccn.org"] [uri "/web/.git/config"] [unique_id "ajDraZRRcf847pbuCqSybAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-06-16 06:10:30
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 05:59:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.109.65.52 (52.65.109.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.65.52 (52.65.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 01:59:38.167877 2026] [security2:error] [pid 27167:tid 27167] [client 136.109.65.52:42150] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martinvjohnson.com"] [uri "/backend/.git/config"] [unique_id "ajDmSnHBuFFgpeYdW_jN7gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-06-16 05:59:18
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-15 22:01:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.109.65.52 (52.65.109.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.109.65.52 (52.65.109.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 18:01:02.084633 2026] [security2:error] [pid 15577:tid 15577] [client 136.109.65.52:47472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dodgersboosterclub.com"] [uri "/public/.git/config"] [unique_id "ajB2HtnI0hfLpJ_CYi23VAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-15 18:56:20
(1 day ago)
Attempt to access sensitive files
Hacking
Web App Attack
๐ช๐ธ
librebit
2026-05-23 02:27:25
(3 weeks ago)
Listed IP in blacklist by postfix/dnsblog
Spoofing
๐ท๐ธ
Smel
2026-05-21 09:34:12
(3 weeks ago)
Mail/25/465/587-993/995 Probe, Reject, BadAuth, Hack, SPAM -
Email Spam
Hacking
Brute-Force
๐จ๐ญ
Origon
2026-05-21 09:29:48
(3 weeks ago)
NOQUEUE - IP: 136.109.65.52 - May 21 11:29:48 plesk postfix/smtpd[2519799]: NOQUEUE: reject: RCPT f ...
show more
NOQUEUE - IP: 136.109.65.52 - May 21 11:29:48 plesk postfix/smtpd[2519799]: NOQUEUE: reject: RCPT from 52.65.109.136.bc.googleusercontent.com[136.109.65.52]: 554 5.7.1 Service unavailable; Client host [136.109.65.52] blocked using b.barracudacentral.org; http://www.barracudanetworks.com/reputation/?pr=1&ip=136.109.65.52; from=<> to=<REDACTED@REDACTED> proto=ESMTP helo=<[10.88.0.3]>
show less
Email Spam
๐ณ๐ฑ
Cloud86 B.V.
2026-05-04 12:52:04
(1 month ago)
categories: Email Spam
Email Spam
๐ช๐ธ
librebit
2026-05-04 12:48:26
(1 month ago)
Listed IP in blacklist by postfix/dnsblog
Spoofing