🇺🇸
TPI-Abuse
2026-09-04 21:06:23
(38 minutes ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 17:06:18.759288 2026] [security2:error] [pid 17638:tid 17638] [client 136.70.135.253:47338] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.knorg.com"] [uri "/html/.git/config"] [unique_id "apsyytDSXjnaK4p1KcYdqQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-04 20:39:14
(1 hour ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
🇺🇸
TPI-Abuse
2026-09-04 20:17:19
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 16:17:12.946959 2026] [security2:error] [pid 22488:tid 22488] [client 136.70.135.253:60350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drumfever.okwellbeing.com"] [uri "/src/.git/config"] [unique_id "apsnSHDs9j72-mV5VP-ifgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-04 18:05:35
(3 hours ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
Anonymous
2026-09-04 16:13:52
(5 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-04 01:33:34
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 21:33:28.280310 2026] [security2:error] [pid 19030:tid 19030] [client 136.70.135.253:37392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "advancedmachininginc.com"] [uri "/api/.git/config"] [unique_id "apof6CF1GqJuBvwq8OMN8gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Philister11
2026-09-04 00:36:25
(21 hours ago)
CrowdSec: crowdsecurity/http-probing (US/AS396982)
Web App Attack
Hacking
🇫🇷
masterguru
2026-09-04 00:34:52
(21 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-195)
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-04 00:19:03
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 20:18:57.025089 2026] [security2:error] [pid 6752:tid 6752] [client 136.70.135.253:60146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "femalegamblers.org"] [uri "/api/.git/config"] [unique_id "apoOcW4f3jGMLP2_uTeL0gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
e.fierstra
2026-09-03 23:14:46
(22 hours ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 20:35:17
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
🇺🇸
TPI-Abuse
2026-09-03 18:51:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:51:31.584920 2026] [security2:error] [pid 1591161:tid 1591181] [client 136.70.135.253:47818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marinkovich.us"] [uri "/app/.git/config"] [unique_id "apnBsy9AW-EQ-tMLAGvWlwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇸🇪
vaia.cloud
2026-09-03 13:45:02
(1 day ago)
crowdsecurity/http-sensitive-files
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 12:43:03
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 08:42:58.889827 2026] [security2:error] [pid 29349:tid 29349] [client 136.70.135.253:44406] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "loftonboys.com"] [uri "/api/.git/config"] [unique_id "aplrUjAVJb1FZs6C5JtNTQAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 10:55:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 136.70.135.253 (253.135.70.136.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 06:55:16.128463 2026] [security2:error] [pid 16006:tid 16106] [client 136.70.135.253:42782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thetooheys.com"] [uri "/.git/config"] [unique_id "aplSFImtp58quw2TC7QiQAAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack