Anonymous
2026-09-06 04:13:49
(1 day ago)
Multiple Git Repository Information Disclosure attempt.
Hacking
🇳🇱
BlueWire Hosting
2026-09-06 01:38:47
(1 day ago)
Aggressive scanning resulting into 404
Bad Web Bot
🇺🇦
URAN Publishing Service
2026-09-06 01:11:14
(1 day ago)
[06/Sep/2026:04:11:13 +0300] -- 136.112.147.33 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[06/Sep/2026:04:11:13 +0300] -- 136.112.147.33 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /backup.sql HTTP/1.1
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 20:40:12
(1 day ago)
Bot / seems abusive / Apache connections: 30
DDoS Attack
Web Spam
Bad Web Bot
Web App Attack
🇺🇸
Matthew Ping
2026-09-05 15:00:02
(1 day ago)
Excessive connections (DDoS/flood) blocked by CSF CT_LIMIT on wp1.
DDoS Attack
Brute-Force
🇩🇪
gadix
2026-09-05 13:08:55
(1 day ago)
[05/Sep/2026:15:08:53.936228 +0200] apwUZQmmgOwB87QxC8sciAAAABQ 136.112.147.33 45566 127.0.0.1 7080
...
show more
[05/Sep/2026:15:08:53.936228 +0200] apwUZQmmgOwB87QxC8sciAAAABQ 136.112.147.33 45566 127.0.0.1 7080
[05/Sep/2026:15:08:53.937536 +0200] apwUZQmmgOwB87QxC8sciQAAABg 136.112.147.33 45626 127.0.0.1 7080
[05/Sep/2026:15:08:53.938547 +0200] apwUZQmmgOwB87QxC8scigAAAAs 136.112.147.33 45642 127.0.0.1 7080
...
show less
Web App Attack
🇧🇪
taivas.nl
2026-09-05 04:32:48
(2 days ago)
Many_bad_calls
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 02:18:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 22:18:02.765129 2026] [security2:error] [pid 9758:tid 9758] [client 136.112.147.33:39544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.15cherryavenue.com"] [uri "/htdocs/.git/config"] [unique_id "apt72qvr1XdZHybKeximbAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 22:51:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 18:51:29.581868 2026] [security2:error] [pid 8393:tid 8393] [client 136.112.147.33:35118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "reachpoint.com"] [uri "/html/.git/config"] [unique_id "aptLcSxf9gJES7laKcE8zgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-04 22:00:51
(2 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-03.
show less
Web App Attack
SSH
Hacking
🇨🇦
polycoda
2026-09-04 21:16:27
(2 days ago)
AutoBlock: ⚙️ Configuration File Access (Non Decay-Based)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:14:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:13:52.501677 2026] [security2:error] [pid 11588:tid 11588] [client 136.112.147.33:39106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lawson-insurance.com"] [uri "/site/.git/config"] [unique_id "aps0kI586sGqzRYtBhlNFQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 20:05:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:05:12.339360 2026] [security2:error] [pid 15842:tid 15842] [client 136.112.147.33:40494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dianedanielsmanning.com"] [uri "/site/.git/config"] [unique_id "apskeLi-Ni5wbfaWYJSI3wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 19:07:35
(2 days ago)
136.112.147.33 - - [04/Sep/2026:19:07:34 +0000] "GET /public/.git/config HTTP/1.1" 404 7732 "-" "cru ...
show more
136.112.147.33 - - [04/Sep/2026:19:07:34 +0000] "GET /public/.git/config HTTP/1.1" 404 7732 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 18:45:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.147.33 (33.147.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 14:45:17.275002 2026] [security2:error] [pid 15192:tid 15192] [client 136.112.147.33:39302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gcmmortgage.com"] [uri "/wordpress/.git/config"] [unique_id "apsRvfiurESz4b3TKxgBKwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack