๐ง๐ช
madeit
2026-09-18 21:24:45
(2 hours ago)
Web App Attack
๐ง๐ช
madeit
2026-09-06 16:11:13
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:30:43
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:30:36.657475 2026] [security2:error] [pid 17595:tid 17595] [client 172.70.134.218:14183] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.healthmarkcounseling.com"] [uri "/.git/HEAD"] [unique_id "aoO1vGTk1REDYk3EySZQIAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 11:36:39
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 07:36:34.765813 2026] [security2:error] [pid 31813:tid 31813] [client 172.70.134.218:14276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.maledon.com"] [uri "/.git/HEAD"] [unique_id "aoLyQu9xz_XQw9S_ttdT-QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:49:13
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:49:05.092563 2026] [security2:error] [pid 31703:tid 31703] [client 172.70.134.218:10498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jamesallenwalker.com"] [uri "/.git/config"] [unique_id "aoLLAbRwDuzivyfCaC6pYQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:41:52
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:41:46.978740 2026] [security2:error] [pid 3587560:tid 3587575] [client 172.70.134.218:12815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aafmhk.aafm.us"] [uri "/.git/config"] [unique_id "aoFbqttRr2GkZSEw84Jb_AAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-11 17:02:04
(1 month ago)
Web App Attack
๐ซ๐ท
Baking333
2026-08-09 20:34:10
(1 month ago)
[redacted] 172.70.134.218 - - [09/Aug/2026:21:33:56 +0100] "GET /@fs/usr/src/app/.aws/credentials?ra ...
show more
[redacted] 172.70.134.218 - - [09/Aug/2026:21:33:56 +0100] "GET /@fs/usr/src/app/.aws/credentials?raw?? HTTP/2.0" 301 210 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://[redacted]/bot" [redacted] 172.70.134.218 - - [09/Aug/2026:21:34:01 +0100] "GET /fr/@fs/usr/src/app/.aws/credentials/?raw?? HTTP/2.0" 404 131137 "https://[redacted]/@fs/usr/src/app/.aws/credentials?raw??" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; ChatGPT-User/1.0; +https://[redacted]/bot"
show less
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-26 04:23:25
(2 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 15:50:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 11:50:15.733228 2026] [security2:error] [pid 2962:tid 2962] [client 172.70.134.218:13436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.80corvette.com"] [uri "/.env.orig"] [unique_id "acqbtzwhcE8R2W5T5DYcnQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 14:21:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 10:21:24.024928 2026] [security2:error] [pid 12283:tid 12294] [client 172.70.134.218:10135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "isa-energy.net.oplconnect.com"] [uri "/.env.staging"] [unique_id "acqG41V3NJHnfrdwBwLn0QAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 12:10:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 08:10:22.917992 2026] [security2:error] [pid 20258:tid 20258] [client 172.70.134.218:13561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.kemela.com"] [uri "/.env.production.local"] [unique_id "acpoLsQd9B6qIIWpIDM-AAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 11:26:45
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 07:26:39.181969 2026] [security2:error] [pid 6438:tid 6438] [client 172.70.134.218:12759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.hawaiivacations.com"] [uri "/.git/refs/heads/main"] [unique_id "acpd7xRI4w0VCunXVxWphAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 08:50:15
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.134.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 04:50:06.956143 2026] [security2:error] [pid 9911:tid 9911] [client 172.70.134.218:12418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.afscmelocal2794.com"] [uri "/api/.env"] [unique_id "aco5PmpXpr78HC4iMkijsgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-03-30 07:07:19
(5 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack