🇭🇳
unph
2026-09-04 14:35:41
(1 hour ago)
Intento de acceso sospechoso bloqueado por AbuseIPDB Blocker Plugin
Brute-Force
🇫🇷
dynamix
2026-09-04 12:02:40
(4 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 11:09:22
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 07:09:15.368828 2026] [security2:error] [pid 30203:tid 30203] [client 136.67.185.23:60284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "instantanything.com.graydortmotors.com"] [uri "/htdocs/.git/config"] [unique_id "apqm26MkBl0P-Zdi3EXKIgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-04 09:15:06
(7 hours ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 07:26:58
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:26:51.418916 2026] [security2:error] [pid 10109:tid 10109] [client 136.67.185.23:34364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ficklepassionproductions.com"] [uri "/htdocs/.git/config"] [unique_id "appyu4BDFOgfr8qzpbHj3gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇿🇦
conure.sh
2026-09-04 07:02:21
(9 hours ago)
csagent: score 20.5: 404 noise floor x2, secrets grab x2; 1 domain(s) in 0s
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 05:38:35
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 01:38:27.301531 2026] [security2:error] [pid 15831:tid 15831] [client 136.67.185.23:36172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tigerchess.club.rcto.us"] [uri "/public/.git/config"] [unique_id "appZU8Ds-6GrYffKQfCoowAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-04 01:01:12
(15 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
🇳🇱
MM-bot
2026-09-04 00:44:15
(15 hours ago)
URL-probe: HTTP/1.1 GET request on /site/.git/config (2026-09-04 02:44:15 UTC+2)
Web App Attack
Hacking
🇩🇪
Philister11
2026-09-04 00:36:52
(15 hours ago)
CrowdSec: crowdsecurity/http-probing (US/AS396982)
Web App Attack
Hacking
🇳🇴
jad-abuse
2026-09-03 23:58:11
(16 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure, scanner_ua. Observed by 1 sensor(s); 12 hits.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 22:19:34
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 18:19:28.828566 2026] [security2:error] [pid 19078:tid 19078] [client 136.67.185.23:54382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "steinrauffamilylaw.com"] [uri "/public/.git/config"] [unique_id "apnycBNdrb4_uE9w95Y4ZQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-03 21:59:55
(18 hours ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-03 20:21:04
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.185.23 (23.185.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 16:20:57.910968 2026] [security2:error] [pid 2653:tid 2653] [client 136.67.185.23:50400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "serviciodepinturadecasas.spyasociados.com"] [uri "/api/.git/config"] [unique_id "apnWqUUwpZ33A0JzKa6HqgAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇫🇷
LRNP
2026-09-03 18:56:49
(21 hours ago)
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /html/.git/config HTTP/1.1" 40 ...
show more
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /html/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /backend/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /www/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /src/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /htdocs/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /app/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /public/.git/config HTTP/1.1" 403 146 "-" "crusader-worker/1.0"
mc.lpoujol.fr:443 136.67.185.23 - - [03/Sep/2026:18:56:49 +0000] "GET /.
...
show less
Bad Web Bot
Web App Attack