π¬π§
thetomtaylor.co.uk
2026-10-02 13:07:01
(2 hours ago)
Fail2Ban - [WEB]Custom exploit pattern detected on customexploits ... [wa02]
Hacking
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 09:31:16
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 05:31:09.461369 2026] [security2:error] [pid 12438:tid 12438] [client 170.64.231.65:54946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "progressivefileshare.org"] [uri "/.git/config"] [unique_id "ar953QZOtOJxdLQjT0Az_AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 08:50:39
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 04:50:31.955422 2026] [security2:error] [pid 22490:tid 22490] [client 170.64.231.65:39620] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kirbysheetmetalworks.com"] [uri "/.git/config"] [unique_id "ar9wV1M7Wa2792SE4YGOzAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
altenglaner
2026-10-02 07:55:08
(7 hours ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
π³π±
Alt255
2026-10-02 07:21:38
(8 hours ago)
[ti-tinov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 17 ...
show more
[ti-tinov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 170.64.231.65 - - \[02/Oct/2026:09:21:17 +0200\] "GET /.git/config HTTP/1.1" 404 17717 "-" "Mozilla/5.0 \(X11\; Linux x86_64\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 07:19:22
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 03:19:19.578641 2026] [security2:error] [pid 8989:tid 8989] [client 170.64.231.65:58676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "justmakingitbetter.com"] [uri "/.git/config"] [unique_id "ar9a9wXezdvdrL2XLTPmKwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 06:41:39
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 02:41:35.361906 2026] [security2:error] [pid 24986:tid 24986] [client 170.64.231.65:53132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roadtosalvation.org"] [uri "/.git/config"] [unique_id "ar9SHw_b39QTgePsmwmgwgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
Budyn
2026-10-02 04:50:00
(10 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: goblinpot.space | URI: /.git/config | UA: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 03:04:22
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 23:04:19.072190 2026] [security2:error] [pid 24788:tid 24788] [client 170.64.231.65:35010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jwhitelive.com"] [uri "/.git/config"] [unique_id "ar8fM1RLQnWPwS55Vm6PQgAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 02:31:12
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 22:31:04.117159 2026] [security2:error] [pid 31702:tid 31702] [client 170.64.231.65:39578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strawberryhillchristmas.com"] [uri "/.git/config"] [unique_id "ar8XaEqF2hzgXumbF4bpZAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-02 01:15:02
(14 hours ago)
File repository snooping:
170.64.231.65 - - [02/Oct/2026:02:05:46 +0100] "GET /.git/config HTTP/1.1 ...
show more
File repository snooping:
170.64.231.65 - - [02/Oct/2026:02:05:46 +0100] "GET /.git/config HTTP/1.1" 404 330 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 00:09:39
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 170.64.231.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 20:09:35.046980 2026] [security2:error] [pid 18627:tid 18627] [client 170.64.231.65:48190] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pharmaceuticalsalescertifications.com"] [uri "/.git/config"] [unique_id "ar72P1eDIfKCVXnQRKf2lAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Rip
2026-10-01 23:03:49
(16 hours ago)
Restricted File Access Attempts
Port Scan
Web App Attack
Anonymous
2026-10-01 22:40:02
(16 hours ago)
Bot / scanning and/or hacking attempts: GET /.git/config HTTP/1.1
Hacking
Web App Attack
π§π·
radardatelecom
2026-10-01 22:26:03
(17 hours ago)
Blocked by Radar da Telecom firewall β abuseipdb
Bad Web Bot
Web App Attack