π·πΊ
DZBOT
2026-06-09 17:41:14
(3 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
π¨π
ALPHANET
2026-06-09 08:10:40
(4 days ago)
web exploits
Hacking
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-07 04:07:04
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 00:07:01.474459 2026] [security2:error] [pid 6792:tid 6825] [client 172.70.240.24:10451] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gwgfamily.giere.us"] [uri "/.git/config"] [unique_id "aiTuZVLAv4XPCas_rCWZSAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-06 20:26:06
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 16:26:02.321818 2026] [security2:error] [pid 20739:tid 20739] [client 172.70.240.24:12749] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graciousholding.com"] [uri "/.git/config"] [unique_id "aiSCWjqNHHFEpP6ktPy0wwAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
big-cloud.nl
2026-06-03 22:05:38
(1 week ago)
Try to access /.git/config
Web App Attack
πΊπΈ
mnsf
2026-06-03 01:05:05
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 13:47:29
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:47:25.629343 2026] [security2:error] [pid 6282:tid 6282] [client 172.70.240.24:13484] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "letahitibookings.com"] [uri "/.git/config"] [unique_id "ah7e7VV-n433kKVNgrw72AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Axel
2026-05-24 10:25:31
(2 weeks ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.git/config Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
π¦πΊ
trentwiles.com
2026-05-23 14:41:42
(2 weeks ago)
Unauthorized connection attempt detected from IP address 172.70.240.24 to port 80 [SYD]
Port Scan
πΊπΈ
CBJ
2026-05-22 04:45:42
(3 weeks ago)
fail2ban: apache-filepath-recon
...
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-07 00:43:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 20:42:59.442538 2026] [security2:error] [pid 2364:tid 2364] [client 172.70.240.24:11314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.cabwebs.com"] [uri "/.env"] [unique_id "afvgEyufgcmx3LJeq-61IAAAAAg"], referer: https://www.google.com/search?q=cpcontacts.cabwebs.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-03 08:49:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 04:49:00.918377 2026] [security2:error] [pid 30566:tid 30566] [client 172.70.240.24:14162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "commercialphotostudiorental.com"] [uri "/.git/config"] [unique_id "afcL_FHAqf_GoXBHaQ6SYwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 16:55:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 12:55:16.507550 2026] [security2:error] [pid 5827:tid 5827] [client 172.70.240.24:14253] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.matrixpercussiontrio.com"] [uri "/.git/config"] [unique_id "afOJdDcBbqaz6D8vKRI88wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-29 13:15:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 09:15:12.170310 2026] [security2:error] [pid 19416:tid 19416] [client 172.70.240.24:12601] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.archaiusmusic.com"] [uri "/.git/config"] [unique_id "afIEYL4OcsD0Cs9m6hgsSAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-28 13:42:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.24 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 09:42:48.993520 2026] [security2:error] [pid 27662:tid 27662] [client 172.70.240.24:9541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wryemusings.com"] [uri "/.git/config"] [unique_id "afC5WNeGcIxrrQQRl9ksCwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack