🇺🇸
TPI-Abuse
2026-09-04 01:51:27
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:51:20.503488 2026] [security2:error] [pid 10910:tid 10910] [client 136.64.123.127:44554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "airedaleflyer.com"] [uri "/site/.git/config"] [unique_id "apokGOulDU2oqD-mGbHqXgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Philister11
2026-09-04 00:39:54
(4 hours ago)
CrowdSec: crowdsecurity/http-sensitive-files (US/AS396982)
Web App Attack
Hacking
🇦🇺
2000cn.com.au
2026-09-03 23:38:53
(5 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-03 22:09:29
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:09:25.816587 2026] [security2:error] [pid 16691:tid 16691] [client 136.64.123.127:48114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "staging.gracebaptisthartsville.com"] [uri "/backend/.git/config"] [unique_id "apnwFXzpWxo1a-kVlfI86wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-03 20:10:32
(8 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇺🇸
mnsf
2026-09-03 20:05:21
(9 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 19:50:12
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 15:50:07.359178 2026] [security2:error] [pid 20369:tid 20369] [client 136.64.123.127:49222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seacorre.de"] [uri "/api/.git/config"] [unique_id "apnPb1Eeu5qmIDY8LMvsOwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇮
paissangroup
2026-09-03 19:04:19
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 18:50:02
(10 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-03 16:14:41
(12 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇫🇷
dynamix
2026-09-03 15:32:24
(13 hours ago)
Multiple WAF Violations
Web App Attack
🇨🇭
leo1305
2026-09-03 14:40:25
(14 hours ago)
CrowdSec detection | scenario: http-probing
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 08:47:46
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:47:40.349837 2026] [security2:error] [pid 19900:tid 19900] [client 136.64.123.127:57128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hollyndlaw.com"] [uri "/api/.git/config"] [unique_id "apk0LBhAKoD9p76kJpMdaQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 08:10:21
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:10:14.138724 2026] [security2:error] [pid 8469:tid 8978] [client 136.64.123.127:54916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beltagin.ep-dh.com"] [uri "/backend/.git/config"] [unique_id "apkrZnJc7SyA76BEfVnUdQAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 07:26:16
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.64.123.127 (127.123.64.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 03:26:12.621500 2026] [security2:error] [pid 7605:tid 7605] [client 136.64.123.127:48470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valuerec.com"] [uri "/.git/config"] [unique_id "apkhFBtHUMyRNx1jIIrefQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack