π³π±
MM-bot
2026-10-07 03:02:36
(33 minutes ago)
URL-probe: HTTP/1.1 GET request on /.git/config (2026-10-07 05:02:36 UTC+2)
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-10-07 02:42:06
(54 minutes ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:42:02.404525 2026] [security2:error] [pid 3213504:tid 3213523] [client 170.64.174.7:43160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "millievelasco.com"] [uri "/.git/config"] [unique_id "asWxes0EDMNLsgnt6dPi0wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 02:26:58
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:26:52.309797 2026] [security2:error] [pid 7529:tid 7529] [client 170.64.174.7:56894] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "millergrain.com"] [uri "/.git/config"] [unique_id "asWt7E_Wjqf2lEIZNJ5akAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
ipblock.com
2026-10-07 01:22:00
(2 hours ago)
IPBlock protected site ID [3192-af][s=02].
Exploit request, vulnerability scanner.
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 00:17:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 20:17:06.306387 2026] [security2:error] [pid 9553:tid 9553] [client 170.64.174.7:52516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "milakproductions.systemcapacityoptimization.com"] [uri "/.git/config"] [unique_id "asWPgqYwlDM6J-hjok7tyAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 23:44:42
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 19:44:37.089376 2026] [security2:error] [pid 31107:tid 31107] [client 170.64.174.7:52120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mikeziegler.thebrotherhoodlounge.com"] [uri "/.git/config"] [unique_id "asWH5Yn4peR0eSb1SODt9QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
joharikop
2026-10-06 23:23:51
(4 hours ago)
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-cred ...
show more
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-credential-probes jail.
show less
Web App Attack
πΊπΈ
OceanTreasure
2026-10-06 23:23:25
(4 hours ago)
tcp/443; Laravel Filemanager package probe (/vendor/laravel-filemanager/js/script.js) used to locate ...
show more
tcp/443; Laravel Filemanager package probe (/vendor/laravel-filemanager/js/script.js) used to locate the unauthenticated file-upload component before exploitation: "GET //vendor/laravel-filemanager/js/script.js" @ 2026-10-06T23:23:25Z [proxy]
show less
Web App Attack
πΊπΈ
IndigoRidge
2026-10-06 23:01:49
(4 hours ago)
170.64.174.7 - - [06/Oct/2026:19:01:45 -0400] "GET /.git/config HTTP/1.1" 404 45874 "http://mikefarr ...
show more
170.64.174.7 - - [06/Oct/2026:19:01:45 -0400] "GET /.git/config HTTP/1.1" 404 45874 "http://mikefarrargroup.com/.git/config" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
170.64.174.7 - - [06/Oct/2026:19:01:45 -0400] "GET /.git/config HTTP/1.1" 404 45874 "https://mikefarrargroup.com/.git/config" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
170.64.174.7 - - [06/Oct/2026:19:01:48 -0400] "GET /.git/config HTTP/1.1" 404 45874 "http://mikefarrarteam.com/.git/config" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 22:53:01
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 18:52:54.020472 2026] [security2:error] [pid 15389:tid 15389] [client 170.64.174.7:51674] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mikeberro.com"] [uri "/.git/config"] [unique_id "asV7xi4jqRwjrvdirPt8EAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πͺπΈ
masterguru
2026-10-06 22:23:03
(5 hours ago)
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110- ...
show more
Inbound Anomaly Score Exceeded (Total Score: 5). Operator GE matched 5 at TX:anomaly_score. (949110-122)
show less
Hacking
πΊπΈ
TPI-Abuse
2026-10-06 19:49:10
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 15:49:05.187773 2026] [security2:error] [pid 17245:tid 17245] [client 170.64.174.7:44638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "midnight-tech.com"] [uri "/.git/config"] [unique_id "asVQsZsTDLSlELho1B4OcAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-10-06 18:27:53
(9 hours ago)
20 attempts against mh-misbehave-ban on redirect
Brute-Force
Bad Web Bot
Web App Attack
π²πΎ
Rizzy
2026-10-06 18:20:55
(9 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 18:18:13
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.174.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 14:18:08.798969 2026] [security2:error] [pid 22426:tid 22426] [client 170.64.174.7:36238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "microscopedia.com"] [uri "/.git/config"] [unique_id "asU7YMewiSyqXYnQlfI9TQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack