๐ซ๐ท
dynamix
2026-09-02 05:33:21
(1 hour ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:54:27
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:54:20.227364 2026] [security2:error] [pid 24377:tid 24377] [client 136.117.167.131:42350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.deannesamuelskids.com"] [uri "/public/.git/config"] [unique_id "aper_DjBqyyA4AB4w7oSBQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-09-02 04:50:43
(2 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 04:36:14
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 00:36:09.153883 2026] [security2:error] [pid 24636:tid 24644] [client 136.117.167.131:53936] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kennedyfineartphotography.com"] [uri "/var/www/.git/config"] [unique_id "apenuYOSFp6n9DwYhTfgPgAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-02 04:35:31
(2 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 136.117.167.131 (US/United States/131 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 136.117.167.131 (US/United States/131.167.117.136.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
mnsf
2026-09-02 04:05:04
(2 hours ago)
Scanning/Probing (23)
Brute-Force
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-02 03:50:01
(3 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
Anonymous
2026-09-02 03:47:34
(3 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-02 00:30:28
(6 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ซ๐ท
masterguru
2026-09-02 00:05:05
(6 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 136.117.167.131 (US/United States/131 ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 136.117.167.131 (US/United States/131.167.117.136.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 23:57:26
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 19:57:18.354967 2026] [security2:error] [pid 22946:tid 22946] [client 136.117.167.131:55818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.wilklass.com"] [uri "/app/.git/config"] [unique_id "apdmXoDoc3OrojBO56tjxAAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 23:02:23
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 19:02:16.940268 2026] [security2:error] [pid 29487:tid 29487] [client 136.117.167.131:38962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "treeofloveproductions.com"] [uri "/site/.git/config"] [unique_id "apdZeDs7dkYMJ_Y7Ut2iugAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Kreapptivo
2026-09-01 22:39:27
(8 hours ago)
[02/Sep/2026:00:39:26 +0200] Web-Request: "GET /site/.git/config", User-Agent: "crusader-worker/1.0"
Bad Web Bot
Web App Attack
๐ฉ๐ช
XICTRON
2026-09-01 20:55:06
(10 hours ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 20:28:48
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleuserc ...
show more
(mod_security) mod_security (id:210492) triggered by 136.117.167.131 (131.167.117.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 16:28:41.329192 2026] [security2:error] [pid 14607:tid 14607] [client 136.117.167.131:49358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "customhumanrobots.internetnameregistration.com"] [uri "/html/.git/config"] [unique_id "apc1eajndIJziuP9F1lXnwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack