🇺🇸
TPI-Abuse
2026-09-09 05:59:08
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 01:59:04.693572 2026] [security2:error] [pid 9042:tid 9042] [client 170.64.171.176:44862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "campconcerto.com"] [uri "/.git/config"] [unique_id "aqD1qJByYwMdIWEzKtiFCAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 05:28:54
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 01:28:51.287338 2026] [security2:error] [pid 7958:tid 7958] [client 170.64.171.176:46332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "camouflagebikinis.com"] [uri "/.git/config"] [unique_id "aqDuk3tOE6AZrsD5CcWusAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
ipald
2026-09-09 05:13:47
(9 hours ago)
MIoT SecOps: Web probe: git-exposure [200]
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 04:36:54
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 00:36:49.935031 2026] [security2:error] [pid 29554:tid 29554] [client 170.64.171.176:42708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cameronwv.mmldesign.com"] [uri "/.git/config"] [unique_id "aqDiYW1JNuPk-BmStCdc5QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇧🇬
HighWay
2026-09-09 04:27:39
(10 hours ago)
170.64.171.176 - - [09/Sep/2026:04:27:32 +0000] "GET //assets/admin/bower_components/jquery.filer/ph ...
show more
170.64.171.176 - - [09/Sep/2026:04:27:32 +0000] "GET //assets/admin/bower_components/jquery.filer/php/readme.txt HTTP/1.1" 404 693 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
170.64.171.176 - - [09/Sep/2026:04:27:32 +0000] "GET //file-manager/initialize HTTP/1.1" 404 693 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
170.64.171.176 - - [09/Sep/2026:04:27:32 +0000] "GET //assets/vendor/jquery.filer/php/readme.txt HTTP/1.1" 404 693 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
170.64.171.176 - - [09/Sep/2026:04:27:32 +0000] "POST //ALFA_DATA/alfacgiapi/perl.alfa HTTP/1.1" 404 693 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
170.64.171.176 - - [09/Sep/2026:04:27:33 +0000] "GET //jquery-file-upload/server
...
show less
Bad Web Bot
Web App Attack
🇩🇪
paissangroup
2026-09-09 04:18:54
(10 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
interbiznw.com
2026-09-09 03:56:59
(11 hours ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
🇩🇪
LRob
2026-09-09 03:34:26
(11 hours ago)
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show more
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-09 03:34 UTC
show less
Hacking
Web App Attack
🇺🇸
kosada.com
2026-09-09 03:29:20
(11 hours ago)
Repeated requests for suspicious nonexistent URLs, for example: /assets/js/frontend/jquery-file-uplo ...
show more
Repeated requests for suspicious nonexistent URLs, for example: /assets/js/frontend/jquery-file-upload/server/php/ (HTTP/1.1 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36")
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 03:24:39
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 23:24:35.555372 2026] [security2:error] [pid 17907:tid 17907] [client 170.64.171.176:45402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "camairhvac.com"] [uri "/.git/config"] [unique_id "aqDRczEcmVcFMmJ96hNQewAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
EGP Abuse Dept
2026-09-09 03:05:05
(12 hours ago)
Scanning for web/db/file exploits on calvi-insight.com
SQL Injection
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 03:04:50
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 23:04:43.996876 2026] [security2:error] [pid 16808:tid 16808] [client 170.64.171.176:47586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calvianet.com"] [uri "/.git/config"] [unique_id "aqDMy9cIpKexh7ZQav0I5gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
creechy
2026-09-09 02:51:12
(12 hours ago)
170.64.171.176 - - [08/Sep/2026:19:51:04 -0700] "GET /.git/config HTTP/1.1" 404 767 "-" "Mozilla/5.0 ...
show more
170.64.171.176 - - [08/Sep/2026:19:51:04 -0700] "GET /.git/config HTTP/1.1" 404 767 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Hacking
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-09 02:41:35
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.171.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:41:31.541159 2026] [security2:error] [pid 28095:tid 28095] [client 170.64.171.176:47716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calogerolawfirm.com"] [uri "/.git/config"] [unique_id "aqDHW9b7VxHA6jQzM4j0lAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
mravb
2026-09-09 02:33:33
(12 hours ago)
170.64.171.176 - - [09/Sep/2026:05:33:32 +0300] "GET /.git/config HTTP/1.1" 404 89649 "-" "Mozilla/5 ...
show more
170.64.171.176 - - [09/Sep/2026:05:33:32 +0300] "GET /.git/config HTTP/1.1" 404 89649 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking