Anonymous
2026-09-21 23:56:29
(11 hours ago)
"GET /.git/config HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 23:43:11
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 19:43:03.700547 2026] [security2:error] [pid 6972:tid 7121] [client 64.225.111.168:34652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.tmsx2.com"] [uri "/.git/config"] [unique_id "arHBB8S2bjhzdx6Bg7szmwAAAMQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 22:37:25
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 18:37:17.487791 2026] [security2:error] [pid 5941:tid 5941] [client 64.225.111.168:40112] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.sharonmauldin.com"] [uri "/.git/config"] [unique_id "arGxnRPf4-ZX4P9CLKSRRgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 21:27:47
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:27:39.656226 2026] [security2:error] [pid 17073:tid 17073] [client 64.225.111.168:45556] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.picticon.com"] [uri "/.git/config"] [unique_id "arGhS4O1JTBGRy6aztBI1QAAAGg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
WeCloudit-Anti-Abuse
2026-09-21 21:23:54
(13 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-21 21:07:33
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:07:27.117148 2026] [security2:error] [pid 26857:tid 26857] [client 64.225.111.168:48810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.opere.com"] [uri "/.git/config"] [unique_id "arGcjxJqvOLyKOQmwHKzmQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 20:44:15
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 16:44:10.600315 2026] [security2:error] [pid 30827:tid 30827] [client 64.225.111.168:36376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.nbcnewsradio.com"] [uri "/.git/config"] [unique_id "arGXGprUHtqZfhCy-RXsywAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-21 19:43:07
(15 hours ago)
(CT) IP 64.225.111.168 (-) found to have 13 connections; Ports: *; Direction: inout; Trigger: CT_LIM ...
show more
(CT) IP 64.225.111.168 (-) found to have 13 connections; Ports: *; Direction: inout; Trigger: CT_LIMIT; Logs: tcp: 64.225.111.168:54512 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54464 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54490 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54528 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54452 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:33464 -> 31.134.201.55:80 (TIME_WAIT)
tcp: 64.225.111.168:54506 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:43072 -> 31.134.201.55:80 (TIME_WAIT)
tcp: 64.225.111.168:54532 -> 31.134.201.55:443 (ESTABLISHED)
tcp: 64.225.111.168:54476 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54540 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54456 -> 31.134.201.55:443 (TIME_WAIT)
tcp: 64.225.111.168:54448 -> 31.134.201.55:443 (TIME_WAIT)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-21 19:07:04
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 15:07:00.474551 2026] [security2:error] [pid 31981:tid 31981] [client 64.225.111.168:49734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.jeffstamper.com"] [uri "/.git/config"] [unique_id "arGAVIUzd7pDbel-ozy-KAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
factor1
2026-09-21 18:03:08
(17 hours ago)
CrowdSec at saturn Reports Abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 18:02:33
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 14:02:25.724385 2026] [security2:error] [pid 10566:tid 10593] [client 64.225.111.168:41666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.geekshop.com"] [uri "/.git/config"] [unique_id "arFxMZlX9tNgdyQgd1vqwQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 17:30:55
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 13:30:49.341177 2026] [security2:error] [pid 15643:tid 15643] [client 64.225.111.168:49984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.esware.com"] [uri "/.git/config"] [unique_id "arFpyQskUQlPq7wK24gwKAAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
dot.mg
2026-09-21 17:30:31
(17 hours ago)
Bad behaviour
Web Spam
๐บ๐ธ
factor1
2026-09-21 16:49:53
(18 hours ago)
CrowdSec at apollo Reports Abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 16:46:38
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 64.225.111.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 12:46:32.585721 2026] [security2:error] [pid 13858:tid 13858] [client 64.225.111.168:49026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftp.davidnevue.com"] [uri "/.git/config"] [unique_id "arFfaEipJ4FxWubbv9TTpQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack