🇺🇸
TPI-Abuse
2026-09-06 04:21:58
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 06 00:21:53.170370 2026] [security2:error] [pid 22887:tid 22887] [client 136.66.39.6:42352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vittariafashion.vittariadesign.com"] [uri "/site/.git/config"] [unique_id "apzqYap9MiDMWM7sQOEvbAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-06 03:08:40
(17 hours ago)
Multiple WAF Violations
Web App Attack
🇩🇪
raph
2026-09-06 01:46:44
(18 hours ago)
[DOT FILES] crawler *.env*, .git*, .config*, etc.
Bad Web Bot
Web App Attack
🇫🇷
Lino Project
2026-09-05 22:18:14
(22 hours ago)
136.66.39.6 - - [06/Sep/2026:00:18:12 +0200] "GET /backup.tar HTTP/1.1" 404 5693 "-" "Mozilla/5.0 (X ...
show more
136.66.39.6 - - [06/Sep/2026:00:18:12 +0200] "GET /backup.tar HTTP/1.1" 404 5693 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
136.66.39.6 - - [06/Sep/2026:00:18:12 +0200] "GET /backup.sql HTTP/1.1" 404 5693 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0 Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-05 21:59:32
(22 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-04.
show less
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-05 21:47:56
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:47:52.536974 2026] [security2:error] [pid 27765:tid 27792] [client 136.66.39.6:38282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.104ventures.com"] [uri "/public/.git/config"] [unique_id "apyOCDzU5AZTCgItg3cJwAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 12:07:26
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 08:07:21.341336 2026] [security2:error] [pid 14644:tid 14644] [client 136.66.39.6:55118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cidv.net"] [uri "/.git/config"] [unique_id "apwF-T09zYausQTEIvPUmAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 22:57:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 18:56:57.212136 2026] [security2:error] [pid 15913:tid 15913] [client 136.66.39.6:49296] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rodriguezclaudia.com"] [uri "/app/.git/config"] [unique_id "aptMuUTqX3-eEYWAO7tuKQAAAH0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-04 22:00:31
(1 day ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-04 21:53:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:53:20.010818 2026] [security2:error] [pid 30251:tid 30251] [client 136.66.39.6:43370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bizecomm.com"] [uri "/api/.git/config"] [unique_id "aps90KKRpX0VdKeJ1oqofwAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
dynamix
2026-09-04 21:46:11
(1 day ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 21:06:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 136.66.39.6 (6.39.66.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:06:05.694124 2026] [security2:error] [pid 9337:tid 9337] [client 136.66.39.6:45944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.dantobinlaw.com"] [uri "/www/.git/config"] [unique_id "apsyvXsb69kJ4cEAyUYqFgAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Hary74656
2026-09-04 20:30:29
(2 days ago)
Fail2Ban on schani.hostmi.at: jail=apache-modsecurity, failures=3. No raw log data included.
Web App Attack
Anonymous
2026-09-04 18:41:41
(2 days ago)
136.66.39.6 - - [04/Sep/2026:18:41:41 +0000] "GET /wordpress/.git/config HTTP/1.1" 404 7732 "-" "cru ...
show more
136.66.39.6 - - [04/Sep/2026:18:41:41 +0000] "GET /wordpress/.git/config HTTP/1.1" 404 7732 "-" "crusader-worker/1.0"
...
show less
Bad Web Bot
Web App Attack
🇦🇺
clapper
2026-09-04 18:01:56
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 136.66.39.6 (US/United States/6.39.66.136.bc.go ...
show more
(mod_security) mod_security (id:949110) triggered by 136.66.39.6 (US/United States/6.39.66.136.bc.googleusercontent.com): 5 in the last 600 secs; ID: rub
show less
Brute-Force
Bad Web Bot