๐ซ๐ท
chengkev
2026-08-22 01:50:11
(1 week ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 07:49:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:48:58.193873 2026] [security2:error] [pid 14221:tid 14221] [client 172.70.34.160:11874] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.cynthiabaxter.com"] [uri "/.git/config"] [unique_id "aoK86qHecI2gQoKucoILbQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:52:42
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:52:37.114814 2026] [security2:error] [pid 2668:tid 2668] [client 172.70.34.160:13888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.donaldcoleman.com"] [uri "/.git/config"] [unique_id "aoKhpXgECcEYbjTgK6lHbgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 04:44:54
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 00:44:50.694035 2026] [security2:error] [pid 29670:tid 29749] [client 172.70.34.160:10417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hadith.newtrendmag.org"] [uri "/.git/HEAD"] [unique_id "aoKRwpr07IoY28tYWds64wAAAck"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:54:32
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:54:28.180875 2026] [security2:error] [pid 20441:tid 20441] [client 172.70.34.160:11314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photos.jpwatters.com"] [uri "/.git/HEAD"] [unique_id "aoFQlDZ96ATWVobzMvx0ywAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-05 05:00:52
(3 weeks ago)
Web App Attack
๐ฉ๐ช
acadeova
2026-07-17 04:11:09
(1 month ago)
๐จ Recon detected (nft drop)
SRC=172.70.34.160
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=172.70.34.160
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-15 07:58:38
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 03:58:04.544257 2026] [security2:error] [pid 21906:tid 21906] [client 172.70.34.160:9815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.csf-pos.com"] [uri "/.env"] [unique_id "agbSDKsLkrDO474-vwVnlwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-06 20:05:39
(4 months ago)
Scanning/Probing (13)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-05 19:05:26
(4 months ago)
Scanning/Probing (17)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-02 00:05:50
(4 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-31 23:05:38
(5 months ago)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-30 22:06:29
(5 months ago)
Too many Status 40X (14)
Scanning/Probing (32)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 18:11:55
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 14:11:49.478821 2026] [security2:error] [pid 16479:tid 16479] [client 172.70.34.160:13709] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.vintex.hk"] [uri "/srv/.env"] [unique_id "acq85WxMmpseL_LEDF172AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 13:59:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.34.160 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 09:59:27.029062 2026] [security2:error] [pid 23034:tid 23034] [client 172.70.34.160:12005] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jrpiano.com"] [uri "/.env.old"] [unique_id "acqBv7xlFJYI7R2cX5Ix6AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack