๐บ๐ธ
TPI-Abuse
2026-08-25 21:48:37
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:48:34.149934 2026] [security2:error] [pid 1833:tid 1833] [client 136.112.239.118:52356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xcengineering.xyz"] [uri "/.env"] [unique_id "ao4Nsvr1HC-uJSfxWa0OtQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 21:30:43
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:30:37.057643 2026] [security2:error] [pid 6166:tid 6166] [client 136.112.239.118:31346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xcarsubscription.com"] [uri "/.env"] [unique_id "ao4JfSwJ02Vbcein2epI5gAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-25 21:02:07
(10 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
mccsoft.io
2026-08-25 20:44:10
(10 hours ago)
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). So ...
show more
Web application attack / vulnerability scanning against our public nginx web server (TCP 80/443). Source matched a blocked-path security rule (jail nginx-444); server returned HTTP 444 (connection closed without response). TCP three-way handshake completed (full HTTP request received).
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
thetomtaylor.co.uk
2026-08-25 19:08:02
(12 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [ice01,ice02,wa01,wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
jfz-abuse
2026-08-25 18:23:03
(12 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 18:10:31
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:10:23.781291 2026] [security2:error] [pid 25150:tid 25150] [client 136.112.239.118:1738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vaezi.com"] [uri "/.git/config"] [unique_id "ao3ajzUqM1fPIEVm5d8cnAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:53:39
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:53:35.155368 2026] [security2:error] [pid 30211:tid 30211] [client 136.112.239.118:7318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teenaarunoceans.com"] [uri "/.git/config"] [unique_id "ao3Wn8Mn0-aqdYOUJiNNmQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 17:33:37
(13 hours ago)
[ns31.kdns.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/.git/config
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:25:47
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:25:43.627661 2026] [security2:error] [pid 21145:tid 21145] [client 136.112.239.118:35596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robotrodeo.net"] [uri "/.git/config"] [unique_id "ao3QF-AEStoMRDl6663EKQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:52:26
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:52:18.296214 2026] [security2:error] [pid 19521:tid 19521] [client 136.112.239.118:50752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naacd.com"] [uri "/.git/config"] [unique_id "ao3IQkEXteLdTAJ_7b4X6AAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:17:00
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:16:52.339555 2026] [security2:error] [pid 4838:tid 4838] [client 136.112.239.118:32938] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnmorogiello.com"] [uri "/.git/config"] [unique_id "ao2_9NXeCesYp7VctdcGrAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
LotPhantom
2026-08-25 15:55:17
(15 hours ago)
2026/08/25 15:55:16 [error] 478389#478389: *61147 access forbidden by rule, client: 136.112.239.118, ...
show more
2026/08/25 15:55:16 [error] 478389#478389: *61147 access forbidden by rule, client: 136.112.239.118, server: wynnesmiles.com, request: "GET /.env HTTP/1.1", host: "wynnesmiles.com"
...
show less
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-08-25 15:44:02
(15 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:38:44
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.112.239.118 (118.239.112.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:38:37.404156 2026] [security2:error] [pid 5250:tid 5250] [client 136.112.239.118:24558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eye7graphics.com"] [uri "/.git/config"] [unique_id "ao22_QYX6ddtzhwT3ApfTgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack