πΊπΈ
TPI-Abuse
2026-09-01 15:34:56
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 11:34:50.112954 2026] [security2:error] [pid 20085:tid 20192] [client 136.66.22.215:42882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trulyoriginalpurpleoctopus.art"] [uri "/var/www/.git/config"] [unique_id "apbwmm2LTempPzhL_z5gMgAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Aetherweb Ark
2026-09-01 15:31:16
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 136.66.22.215 (US/United States/215.22.66.136.b ...
show more
(mod_security) mod_security (id:949110) triggered by 136.66.22.215 (US/United States/215.22.66.136.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
π³π΄
jad-abuse
2026-09-01 14:16:09
(2 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 36 hits.
show less
Web App Attack
π³π±
WeCloudit-Anti-Abuse
2026-09-01 13:29:48
(3 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-09-01 10:45:01
(6 hours ago)
suspicious request in access.log
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 10:09:51
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:09:44.638170 2026] [security2:error] [pid 17022:tid 17022] [client 136.66.22.215:43464] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rallyegroup.com"] [uri "/wordpress/.git/config"] [unique_id "apakaGz91yBeixW7FRWltgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
WellSpring
2026-09-01 09:51:24
(7 hours ago)
git exposure on naturologie.com/site/.git/config β WellSpr.ing/NetSentinel civic-AI security layer
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 09:35:20
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:35:11.767718 2026] [security2:error] [pid 18483:tid 18483] [client 136.66.22.215:41540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thermalsoftware.com"] [uri "/www/.git/config"] [unique_id "apacT5cGlOi6E0sPRjmwSgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
on-com
2026-09-01 09:31:45
(7 hours ago)
URL scan
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-09-01 06:05:50
(10 hours ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-01 03:45:58
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.22.215 (215.22.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 23:45:53.317170 2026] [security2:error] [pid 30734:tid 30734] [client 136.66.22.215:37734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calentadoresdemexico.com.mx.spyasociados.com"] [uri "/www/.git/config"] [unique_id "apZKcbswxTZVKsr391NfHwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-09-01 03:25:54
(13 hours ago)
Web attack/malicious scanning detected
Web App Attack