πΊπΈ
TPI-Abuse
2026-10-09 01:51:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 21:51:02.275075 2026] [security2:error] [pid 2366:tid 2366] [client 104.168.75.240:50193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.bwill.dev"] [uri "/.git/HEAD"] [unique_id "ashIhnSjiUxHRj8m_ddUUQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-10-08 22:00:21
(1 day ago)
Auto-ban: >3000 req/min op 2026-10-08
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-10-08 02:20:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 22:20:29.159102 2026] [security2:error] [pid 13173:tid 13173] [client 104.168.75.240:53276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.tpdtuberental.com"] [uri "/.git/HEAD"] [unique_id "asb97bGAmy13V_C3rRUn8gAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 00:10:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:10:22.858550 2026] [security2:error] [pid 26471:tid 26471] [client 104.168.75.240:35555] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jacksonpropertyrentals.com"] [uri "/.git/HEAD"] [unique_id "asbfbjmx-wZbyu6SNFNwPgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 22:59:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 18:59:14.238762 2026] [security2:error] [pid 22796:tid 22796] [client 104.168.75.240:55783] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bairentang.org"] [uri "/.git/HEAD"] [unique_id "asbOwjtBe1IvV4L7dt_g7gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 09:25:40
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 05:25:17.939493 2026] [security2:error] [pid 19923:tid 19923] [client 104.168.75.240:39100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "criarteste.com.creartest.com"] [uri "/.git/HEAD"] [unique_id "asYP_fY3xWYskX-T-zfJFwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-06 12:47:39
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 08:47:29.763097 2026] [security2:error] [pid 468:tid 468] [client 104.168.75.240:52371] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stats.179vfs.com"] [uri "/.git/HEAD"] [unique_id "asTt4WjQau_KNavjPnJ0bQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
rh24
2026-10-06 10:29:03
(4 days ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 104.168.75.240 (US/United States/104-168- ...
show more
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 104.168.75.240 (US/United States/104-168-75-240-host.colocrossing.com)
show less
Hacking
πΊπΈ
TPI-Abuse
2026-10-04 10:43:19
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 06:43:15.045005 2026] [security2:error] [pid 2095140:tid 2095235] [client 104.168.75.240:55942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "12am.com"] [uri "/.git/HEAD"] [unique_id "asItw7XT0_E_rkOIufyZ0QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-10-04 03:06:14
(6 days ago)
[mx01aln] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[mx01aln] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 104.168.75.240 - - [04/Oct/2026:05:06:06 +0200] "GET /.git/HEAD HTTP/1.1" 301 582 "-" "Python-urllib/3.10"
...
show less
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-10-03 13:11:03
(6 days ago)
Secret file probe | method: GET | path: /.git/HEAD | ua: Python-urllib/3.10
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 03:16:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 23:16:20.747773 2026] [security2:error] [pid 23561:tid 23561] [client 104.168.75.240:59837] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.bitcoincasting.com"] [uri "/.git/HEAD"] [unique_id "ar8iBPde1hlgvV2bSrTmowAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-02 01:43:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 21:42:57.913888 2026] [security2:error] [pid 28515:tid 28515] [client 104.168.75.240:57017] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cybersoftware.org.crazycoin.net"] [uri "/.git/HEAD"] [unique_id "ar8MIW046eqbOrpQB9Pl4wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 09:27:18
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 05:26:46.119040 2026] [security2:error] [pid 25724:tid 25724] [client 104.168.75.240:57470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "costumeshalloweenparty.com.piratecostumesonline.com"] [uri "/.git/HEAD"] [unique_id "aroy1odZsBAekdvlb-CTbwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 07:34:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossin ...
show more
(mod_security) mod_security (id:210492) triggered by 104.168.75.240 (104-168-75-240-host.colocrossing.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 03:33:57.779177 2026] [security2:error] [pid 13864:tid 13864] [client 104.168.75.240:33745] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whmlradio.com"] [uri "/.git/HEAD"] [unique_id "arIvZXSdqKYFQDRRzl1pkwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack