🇺🇸
TPI-Abuse
2026-09-07 21:42:30
(8 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 17:42:22.930764 2026] [security2:error] [pid 19894:tid 19894] [client 136.67.86.111:60090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ncparanormalresearch.andrsn.com"] [uri "/.git/config"] [unique_id "ap8vvuRpVwHO7Q89QtKFFQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
A.i.D.A.N.N
2026-09-07 21:41:17
(10 minutes ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web application attack detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 21:18:03
(33 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 17:17:57.691176 2026] [security2:error] [pid 5605:tid 5725] [client 136.67.86.111:33262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nataxcyber.com.venezuelaguia.com"] [uri "/.git/config"] [unique_id "ap8qBT2YA4KZBVkn7lNqRgAAAFc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-07 21:05:26
(46 minutes ago)
Abuse Detected (87)
Brute-Force
Web App Attack
🇯🇵
tttomomi
2026-09-07 21:03:23
(48 minutes ago)
Repeated probing for credential and configuration files, and for known webshell and remote-code-exec ...
show more
Repeated probing for credential and configuration files, and for known webshell and remote-code-execution endpoints, on our web server. Every request was refused with a 4xx status; none returned content. Paths probed: /.git/config.
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 20:48:46
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:48:42.114532 2026] [security2:error] [pid 2387478:tid 2387478] [client 136.67.86.111:41400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nadepot.nodepot.com"] [uri "/.git/config"] [unique_id "ap8jKgycGqkpUfIbxttEWQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 20:48:03
(1 hour ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 20:19:19
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 16:19:11.442908 2026] [security2:error] [pid 2031:tid 2031] [client 136.67.86.111:59518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.myomni.us.smilingorc.com"] [uri "/.git/config"] [unique_id "ap8cP0A687xLooJyB-4JVgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇪
voormedia
2026-09-07 20:19:12
(1 hour ago)
Accessed trap at '/.git/config'
Web App Attack
🇳🇱
MyGlobalFlowers
2026-09-07 20:05:49
(1 hour ago)
Multiple WAF Violations
Web App Attack
🇩🇪
mygcode.de
2026-09-07 20:05:15
(1 hour ago)
Scanning for Exploits
Bad Web Bot
🇫🇮
mnazibo
2026-09-07 20:00:07
(1 hour ago)
Date: 07/Sep/2026 22:35:09 | Reported IP: 136.67.86.111 mod_security | id: 930130 | US/group.my_doma ...
show more
Date: 07/Sep/2026 22:35:09 | Reported IP: 136.67.86.111 mod_security | id: 930130 | US/group.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /.git/config | Logs: Restricted File Access Attempt
show less
SQL Injection
Brute-Force
Bad Web Bot
🇧🇪
cmbplf
2026-09-07 19:59:23
(1 hour ago)
549 requests with url.path */.git/config
Brute-Force
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-07 19:56:27
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:56:19.057421 2026] [security2:error] [pid 9588:tid 9588] [client 136.67.86.111:39652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.myclub.oxfordgliding.com"] [uri "/.git/config"] [unique_id "ap8W4x_RGBOuRrouuue0eQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-07 19:36:31
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 136.67.86.111 (111.86.67.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 07 15:36:25.223798 2026] [security2:error] [pid 24298:tid 24298] [client 136.67.86.111:53592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mwrn.microscopedia.com"] [uri "/.git/config"] [unique_id "ap8SOS8Ci08toWaFacqY6gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack