🇫🇷
Catalin Negru
2026-09-06 09:49:13
(13 hours ago)
2026-09-06 12:49:12,295 fail2ban.actions [1796604]: NOTICE [wordpress] Ban 136.110.111.62
20 ...
show more
2026-09-06 12:49:12,295 fail2ban.actions [1796604]: NOTICE [wordpress] Ban 136.110.111.62
2026-09-06 12:49:12,419 fail2ban.actions [1796604]: NOTICE [apache-scan] Ban 136.110.111.62
2026-09-06 12:49:12,507 fail2ban.actions [1796604]: NOTICE [web-scanner] Ban 136.110.111.62
2026-09-06 12:49:12,724 fail2ban.actions [1796604]: NOTICE [apache-dirscan] Ban 136.110.111.62
2026-09-06 12:49:12,732 fail2ban.actions [1796604]: NOTICE [apache-404] Ban 136.110.111.62
...
show less
Brute-Force
Web App Attack
🇩🇪
paissangroup
2026-09-06 04:27:46
(18 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇪
raph
2026-09-06 03:20:02
(19 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-05 02:32:15
(1 day ago)
Multiple WAF Violations
Web App Attack
🇩🇪
dave
2026-09-05 01:16:29
(1 day ago)
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity ...
show more
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity/vpatch-git-config observed_by=1_hosts hit_count=12 first_seen=2026-09-05T01:16:29Z last_seen=2026-09-05T01:16:29Z
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 23:58:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 19:58:12.814105 2026] [security2:error] [pid 10269:tid 10269] [client 136.110.111.62:39538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.grimone.com"] [uri "/www/.git/config"] [unique_id "aptbFCBKnmAO7DrINM-vBgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 22:01:12
(2 days ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇳🇱
homeshowdomain.nl
2026-09-04 21:59:41
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-03.
show less
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:10:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:10:31.972113 2026] [security2:error] [pid 3106:tid 3190] [client 136.110.111.62:42346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.degreesoflove.com"] [uri "/src/.git/config"] [unique_id "apszx2Kvq6Tz6axckhMblQAAARc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:29:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:29:40.716174 2026] [security2:error] [pid 6730:tid 6730] [client 136.110.111.62:46682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dhappraisalservices.com"] [uri "/src/.git/config"] [unique_id "apsqNFGPg5fwYOmm3UvxxwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 18:50:12
(2 days ago)
[ns19.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/site/.git/config | /backe ...
show more
[ns19.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/site/.git/config | /backend/.git/config | /html/.git/config
show less
Hacking
Web App Attack
🇺🇦
Olexiy Backend
2026-09-04 17:19:45
(2 days ago)
136.110.111.62
...
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 13:04:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 09:03:57.283775 2026] [security2:error] [pid 1975:tid 1975] [client 136.110.111.62:35270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hungrylion.jbaydeliveries.com"] [uri "/www/.git/config"] [unique_id "aprBvSxr0xE5xPSE6LyaEwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:44:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:44:04.849528 2026] [security2:error] [pid 12451:tid 12451] [client 136.110.111.62:55812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thn.bz"] [uri "/wordpress/.git/config"] [unique_id "apqvBJdbY46QiTpdroCAIQAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 10:28:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.110.111.62 (62.111.110.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 06:28:43.551351 2026] [security2:error] [pid 4526:tid 4526] [client 136.110.111.62:50086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aridscapes.com"] [uri "/.git/config"] [unique_id "apqdWxoER6L1F3_MzYGTNwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack