Anonymous
2026-09-28 18:05:15
(21 minutes ago)
Blocked: Reason='Vulnerability probing β PHP scan detected (60/60 min)'; Requests=60
Port Scan
π§πͺ
cmbplf
2026-09-28 17:50:34
(36 minutes ago)
175 requests with url.path */.git/config
Brute-Force
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-09-28 17:23:42
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 13:23:37.720894 2026] [security2:error] [pid 10410:tid 10410] [client 137.184.174.34:55906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heboworld.com.halotoys.com"] [uri "/.git/config"] [unique_id "arqimam3Wza2U2YNKZloxwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-09-28 17:19:21
(1 hour ago)
Secret file probe | method: GET | path: /.git/config | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) ...
show more
Secret file probe | method: GET | path: /.git/config | ua: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
show less
Hacking
Web App Attack
Anonymous
2026-09-28 17:09:16
(1 hour ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-09-28 16:45:45
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 12:45:41.076156 2026] [security2:error] [pid 12482:tid 12482] [client 137.184.174.34:52582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heatspecs.steambalancing.com"] [uri "/.git/config"] [unique_id "arqZtQvgmOvNeeCWWSjIDAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 16:22:04
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 12:22:00.624453 2026] [security2:error] [pid 23763:tid 23763] [client 137.184.174.34:58080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heathbartley.com"] [uri "/.git/config"] [unique_id "arqUKE2jn_ON0vpEdz8M-gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 16:06:42
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 12:06:37.771663 2026] [security2:error] [pid 27185:tid 27185] [client 137.184.174.34:47002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heartshapedboy.com"] [uri "/.git/config"] [unique_id "arqQjcdVa9F5Isy_YE_0JwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-28 16:03:36
(2 hours ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 137.184.174.34 - - [28/Sep/2026:18:03:23 +0200] "GET /.git/config HTTP/1.1" 301 445 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
πΏπ¦
conure.sh
2026-09-28 15:59:28
(2 hours ago)
csagent: score 22.2: 404 noise floor x3, secrets grab x1, phpunit eval-stdin RCE x1; 1 domain(s) in ...
show more
csagent: score 22.2: 404 noise floor x3, secrets grab x1, phpunit eval-stdin RCE x1; 1 domain(s) in 1s
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 15:38:57
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 11:38:52.099414 2026] [security2:error] [pid 24973:tid 24982] [client 137.184.174.34:35280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heartfailuredev.howiek.com"] [uri "/.git/config"] [unique_id "arqKDAjdBrlXAJATRLKFeQAAAMY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π―π΅
bokumin.org
2026-09-28 14:57:55
(3 hours ago)
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/.git/config"] [id "9491 ...
show more
[id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [uri "/.git/config"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"]
show less
Web App Attack
π«π·
Baking333
2026-09-28 14:44:47
(3 hours ago)
[redacted] 137.184.174.34 - - [28/Sep/2026:15:44:46 +0100] "GET /.git/config HTTP/1.1" 301 540 0/471 ...
show more
[redacted] 137.184.174.34 - - [28/Sep/2026:15:44:46 +0100] "GET /.git/config HTTP/1.1" 301 540 0/471 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36" [redacted] 137.184.174.34 - - [28/Sep/2026:15:44:46 +0100] "GET /.git/config HTTP/1.1" 302 1499 0/56073 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 14:43:18
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 137.184.174.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 10:43:11.776950 2026] [security2:error] [pid 19262:tid 19262] [client 137.184.174.34:42450] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "healthycaregiving.com"] [uri "/.git/config"] [unique_id "arp8_5JHoearwq23W4LFVAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Gabriel Camargo
2026-09-28 14:05:31
(4 hours ago)
137.184.174.34 - - [28/Sep/2026:09:05:21 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows N ...
show more
137.184.174.34 - - [28/Sep/2026:09:05:21 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
137.184.174.34 - - [28/Sep/2026:09:05:25 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
137.184.174.34 - - [28/Sep/2026:09:05:30 -0500] "GET / HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Brute-Force
SSH