๐บ๐ธ
TPI-Abuse
2026-10-08 14:06:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 10:06:49.902649 2026] [security2:error] [pid 16660:tid 16669] [client 170.244.94.2:61275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indigowampum.com"] [uri "/.git/HEAD"] [unique_id "asejeYtwUG5eth3j6usGaAAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 13:31:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 09:31:38.601702 2026] [security2:error] [pid 28626:tid 28626] [client 170.244.94.2:36791] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "indiahouseportland.com"] [uri "/.git/HEAD"] [unique_id "asebOmnOTcwjxinoshgq5wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-10-08 12:14:24
(1 day ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐ฉ๐ช
altenglaner
2026-10-08 04:44:58
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-10-08 00:05:32
(1 day ago)
Abuse Detected (39)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 22:59:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 18:59:24.330678 2026] [security2:error] [pid 12293:tid 12293] [client 170.244.94.2:57587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icansayit.com"] [uri "/.git/HEAD"] [unique_id "asbOzPXYzxyM5v47zmafgAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-07 22:00:12
(1 day ago)
Auto-ban: >3000 req/min op 2026-10-07
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-07 16:39:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 12:39:28.868441 2026] [security2:error] [pid 27518:tid 27518] [client 170.244.94.2:47747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hxctechllc.com"] [uri "/.git/HEAD"] [unique_id "asZ1wA97Ggxh-gU3EhDXVAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-10-07 15:05:18
(2 days ago)
Abuse Detected (30)
Brute-Force
Web App Attack
๐จ๐ญ
4server
2026-10-07 04:03:01
(2 days ago)
[WedOct0706:02:57.6244462026][security2:error][pid3282853:tid3282859][client170.244.94.2:0]ModSecuri ...
show more
[WedOct0706:02:57.6244462026][security2:error][pid3282853:tid3282859][client170.244.94.2:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"710\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"hostingedomini.ch\"][uri\"/.git/HEAD\"][unique_id\"asXEcc1v_e3M0Lp_INWDNAAAAMQ\"]
show less
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-10-07 02:05:17
(2 days ago)
Abuse Detected (21)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 22:16:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 18:16:06.021844 2026] [security2:error] [pid 22757:tid 22757] [client 170.244.94.2:27775] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holylandartifact.com"] [uri "/.git/HEAD"] [unique_id "asVzJikYNiIkw17FoQDzVwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-10-06 21:40:40
(2 days ago)
Budyn SOC Canary Trap: AWS Key Compromised! | Memo: AWS_Token_11 | Action: AWS API Call | Token: 7lg ...
show more
Budyn SOC Canary Trap: AWS Key Compromised! | Memo: AWS_Token_11 | Action: AWS API Call | Token: 7lggvodiip8vznhits5cv0986 | Client Tool: aws-cli/2.33.12 md/awscrt#0.31.1 ua/2.1 os/linux#5.15.0-191-generic md/arch#x86_64 lang/python#3.13.11 md/pyimpl#CPython m/g,E,Z,b cfg/retry-mode#standard md...
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 21:12:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.244.94.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 17:12:00.952540 2026] [security2:error] [pid 8493:tid 8493] [client 170.244.94.2:28175] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "holidaycardsboston.com"] [uri "/.git/HEAD"] [unique_id "asVkIHzhmFr3PFdSseN1OAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-10-06 16:05:18
(2 days ago)
Abuse Detected (10)
Brute-Force
Web App Attack