๐บ๐ธ
TPI-Abuse
2026-09-01 09:50:00
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:49:53.543172 2026] [security2:error] [pid 20114:tid 20114] [client 136.115.79.166:34922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thirdplanettechnology.space.ieas.org"] [uri "/htdocs/.git/config"] [unique_id "apafwQtE42xToHC2ePQFRQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
masterguru
2026-09-01 08:45:26
(4 hours ago)
Restricted File Access Attempt. Matched phrase "/.git/" at REQUEST_FILENAME. (930130-166)
Hacking
Web App Attack
๐ฉ๐ช
raph
2026-09-01 08:35:18
(5 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-01 07:20:03
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
mnsf
2026-09-01 06:05:13
(7 hours ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
๐ฌ๐ง
consul.to
2026-09-01 04:10:54
(9 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 04:02:20
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:02:12.192823 2026] [security2:error] [pid 13118:tid 13118] [client 136.115.79.166:55852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cabwebs.com"] [uri "/.git/config"] [unique_id "apZOROxdqRdYKR5yCdrjegAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-09-01 02:05:59
(11 hours ago)
(mod_security) mod_security (id:949110) triggered by 136.115.79.166 (US/United States/166.79.115.136 ...
show more
(mod_security) mod_security (id:949110) triggered by 136.115.79.166 (US/United States/166.79.115.136.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐ฉ๐ช
edena
2026-08-31 17:20:50
(20 hours ago)
136.115.79.166 - - [31/Aug/2026:19:20:50 +0200] "GET /src/.git/config HTTP/1.1" 403 1842 "-" "crusad ...
show more
136.115.79.166 - - [31/Aug/2026:19:20:50 +0200] "GET /src/.git/config HTTP/1.1" 403 1842 "-" "crusader-worker/1.0"
136.115.79.166 - - [31/Aug/2026:19:20:50 +0200] "GET /backend/.git/config HTTP/1.1" 403 1842 "-" "crusader-worker/1.0"
136.115.79.166 - - [31/Aug/2026:19:20:50 +0200] "GET /wordpress/.git/config HTTP/1.1" 403 1842 "-" "crusader-worker/1.0"
...
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
SwinT
2026-08-31 17:00:14
(20 hours ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
๐ณ๐ฑ
Alboweb B.V.
2026-08-30 05:11:03
(2 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
Anonymous
2026-08-29 23:07:03
(2 days ago)
Automated web scanner. Requested suspicious paths: /backend/.git/config | /public/.git/config | /api ...
show more
Automated web scanner. Requested suspicious paths: /backend/.git/config | /public/.git/config | /api/.git/config | /var/www/.git/config. UTC: 2026-08-29 22:31:55.
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-27 22:03:02
(4 days ago)
Auto-ban: >3000 req/min op 2026-08-27
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 17:47:22
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:47:15.454262 2026] [security2:error] [pid 26969:tid 26969] [client 136.115.79.166:51682] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.allthereis.bizecomm.com"] [uri "/api/.git/config"] [unique_id "apB4Iy1Nf_OK8lrvMUqgQgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 17:11:35
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.115.79.166 (166.79.115.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 13:11:29.370299 2026] [security2:error] [pid 1200:tid 1200] [client 136.115.79.166:44806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "miszewski.com"] [uri "/www/.git/config"] [unique_id "apBvwWUUiYuV9rUin1fcfQAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack