๐บ๐ธ
TPI-Abuse
2026-02-13 13:49:40
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 08:49:37.598512 2026] [security2:error] [pid 23076:tid 23076] [client 104.207.48.61:22419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "leadslibrary.net"] [uri "/site/.git/config"] [unique_id "aY8r8YYKpFqlAJoFHw8ERgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
MM-bot
2026-02-13 13:32:29
(3 months ago)
URL-probe: HTTP/1.1 GET request on /app/.git/config (2026-02-13 14:32:29 UTC+1)
Hacking
Web App Attack
๐บ๐ธ
OceanTreasure
2026-02-13 13:15:43
(3 months ago)
tcp/80; Environment configuration file exposure attempt: "GET /.env.staging" @ 2026-02-13T13:11:15Z ...
show more
tcp/80; Environment configuration file exposure attempt: "GET /.env.staging" @ 2026-02-13T13:11:15Z [proxy]
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 07:05:54
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 02:05:46.480490 2026] [security2:error] [pid 3633:tid 3633] [client 104.207.48.61:58423] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "medioskreativos.com"] [uri "/.env.staging"] [unique_id "aY7NSij8BU4CcyFPYaza6AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 04:31:55
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:31:49.218759 2026] [security2:error] [pid 12740:tid 12740] [client 104.207.48.61:60123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marxistphilosophy.org"] [uri "/.env.save"] [unique_id "aY6pNcrn3B9soAIh-xyTbAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-13 04:18:04
(3 months ago)
Blocking for trying to access an exploit file: /.env.save
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-12 20:09:27
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 15:09:20.225677 2026] [security2:error] [pid 3185:tid 3185] [client 104.207.48.61:19031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gilbertortegajewelry.com"] [uri "/.git/config"] [unique_id "aY4zcJoBdilwGR_00TYdcgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 16:47:49
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 11:47:45.648337 2026] [security2:error] [pid 3765757:tid 3765757] [client 104.207.48.61:55685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "coopstehedwidge.com"] [uri "/.env"] [unique_id "aY4EMSdS7PpkaxNk-c0gsQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-11 05:24:01
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 11 00:23:55.053977 2026] [security2:error] [pid 4499:tid 4499] [client 104.207.48.61:49811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fynyx.com"] [uri "/test/.git/config"] [unique_id "aYwSa-sCumMUZAYUJSmSPQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-10 22:59:58
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-10
Hacking
Web App Attack
SSH
๐ณ๐ฑ
ParaBug
2026-02-10 15:33:05
(3 months ago)
104.207.48.61 - - [10/Feb/2026:16:33:04 +0100] "GET /new/.git/config HTTP/1.1" 301 3364 "-" "Mozilla ...
show more
104.207.48.61 - - [10/Feb/2026:16:33:04 +0100] "GET /new/.git/config HTTP/1.1" 301 3364 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 15:25:55
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 10:25:48.750669 2026] [security2:error] [pid 16476:tid 16497] [client 104.207.48.61:46675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antidote-it.com"] [uri "/app/.env"] [unique_id "aYtN_E9tKsgevCjMBZp6OwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 06:00:56
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 01:00:48.817894 2026] [security2:error] [pid 18580:tid 18580] [client 104.207.48.61:34285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "koidivision.com"] [uri "/.git/config"] [unique_id "aYrJkGPP_GmvHbwN13jzKgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 05:05:54
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 00:05:49.987100 2026] [security2:error] [pid 24121:tid 24121] [client 104.207.48.61:58629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kmp.net"] [uri "/new/.git/config"] [unique_id "aYq8rVXRqrw2mrNHYrZgbwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:44:10
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.48.61 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:44:03.099093 2026] [security2:error] [pid 1163111:tid 1163127] [client 104.207.48.61:29181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magazineofwallstreet.com"] [uri "/v2/.git/config"] [unique_id "aYqpg4IkUjRLVk9bu6EuHgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack