๐ง๐ช
madeit
2026-09-18 21:04:43
(17 hours ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 16:10:48
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.93.28 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.93.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 12:10:34.086712 2026] [security2:error] [pid 18557:tid 18557] [client 172.70.93.28:13040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gilbert-consulting.com"] [uri "/.git/config"] [unique_id "aqlt-l0ClyfsKWJFz47m7gAAAAw"], referer: https://www.google.com/search?q=gilbert-consulting.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-09-15 14:34:08
(3 days ago)
[TueSep1516:34:04.3612522026][security2:error][pid1333743:tid1333877][client172.70.93.28:0]ModSecuri ...
show more
[TueSep1516:34:04.3612522026][security2:error][pid1333743:tid1333877][client172.70.93.28:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"filarmonicaagno.ch\"][uri\"/.env.backup\"][unique_id\"aqlXXHV30cIPIHURyxqimQAAABQ\"]\,referer:https://www.google.com/search\?q=filarmonicaagno.ch
show less
Hacking
Web App Attack
Anonymous
2026-09-09 13:50:05
(1 week ago)
Automatic report - Vulnerability scan
$ 403 /api/v3/color_settings/request
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-09-09 03:59:11
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
CBJ
2026-09-09 03:33:49
(1 week ago)
fail2ban: apache-random-recon
...
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-08 22:03:12
(1 week ago)
Auto-ban: >3000 req/min op 2026-09-08
Web App Attack
SSH
Hacking
๐ง๐ช
madeit
2026-09-08 12:22:49
(1 week ago)
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-08-18 01:53:17
(1 month ago)
172.70.93.28 - - [17/Aug/2026:19:53:17 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5.0 ...
show more
172.70.93.28 - - [17/Aug/2026:19:53:17 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 00:50:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.93.28 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.93.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 20:50:16.768709 2026] [security2:error] [pid 14939:tid 14939] [client 172.70.93.28:12079] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lurye.org"] [uri "/.git/config"] [unique_id "aoOsSPgSOcVYRnw54J_7swAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-17 15:20:50
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:30:38
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.93.28 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.93.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:30:34.247398 2026] [security2:error] [pid 12817:tid 12817] [client 172.70.93.28:10829] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zavion.com"] [uri "/.git/config"] [unique_id "aoEgyqH31_iLgLsatIXyRAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
wimaxnz
2026-06-13 00:08:50
(3 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
Anonymous
2026-06-08 17:08:15
(3 months ago)
[Mon Jun 08 19:08:13.662851 2026] [authz_core:error] [pid 23273] [client 172.70.93.28:11944] AH01630 ...
show more
[Mon Jun 08 19:08:13.662851 2026] [authz_core:error] [pid 23273] [client 172.70.93.28:11944] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jun 08 19:08:14.104766 2026] [authz_core:error] [pid 23273] [client 172.70.93.28:11944] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Jun 08 19:08:14.576540 2026] [authz_core:error] [pid 23273] [client 172.70.93.28:11944] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2026-06-05 22:48:27
(3 months ago)
[Sat Jun 06 00:48:26.574018 2026] [authz_core:error] [pid 15417] [client 172.70.93.28:14221] AH01630 ...
show more
[Sat Jun 06 00:48:26.574018 2026] [authz_core:error] [pid 15417] [client 172.70.93.28:14221] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Jun 06 00:48:26.762660 2026] [authz_core:error] [pid 15417] [client 172.70.93.28:14221] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Jun 06 00:48:26.948981 2026] [authz_core:error] [pid 15417] [client 172.70.93.28:14221] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack