๐บ๐ธ
TPI-Abuse
2026-02-13 08:55:51
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 03:55:46.645969 2026] [security2:error] [pid 9204:tid 9204] [client 104.207.49.251:51635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lamanchaorchards.com"] [uri "/.git/config"] [unique_id "aY7nEgDgnHAG6y2D_S3cwgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 06:41:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Feb 13 01:40:57.740378 2026] [security2:error] [pid 14763:tid 14763] [client 104.207.49.251:23153] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kripner.net"] [uri "/app/.env"] [unique_id "aY7HeVA3KrMbS9Y0BHA27wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 04:16:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 23:16:35.067042 2026] [security2:error] [pid 14944:tid 14944] [client 104.207.49.251:25735] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinnerakhareedu.com"] [uri "/admin/.git/config"] [unique_id "aY6low38LXf4NpyJD4tMdQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
sdos.es
2026-02-13 02:57:14
(3 months ago)
"Restricted File Access Attempt - Matched Data: /.git/ found within REQUEST_FILENAME: /site/.git/con ...
show more
"Restricted File Access Attempt - Matched Data: /.git/ found within REQUEST_FILENAME: /site/.git/config"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-13 02:56:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 21:55:58.046256 2026] [security2:error] [pid 5386:tid 5386] [client 104.207.49.251:32513] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ketsuri.com"] [uri "/.env"] [unique_id "aY6SvmB2tUflV0cZXILDmAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-02-13 00:56:20
(3 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.49.251 (BR/Brazil/-): 2 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.207.49.251 (BR/Brazil/-): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 18:31:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 13:31:31.465381 2026] [security2:error] [pid 799:tid 799] [client 104.207.49.251:47391] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "5starfluffandfold.com"] [uri "/.git/config"] [unique_id "aY4cg5ZPvNyIc-h1pcogHQAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-02-12 17:09:03
(3 months ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-02-12 15:42:38
(3 months ago)
104.207.49.251 - - [12/Feb/2026:16:39:36 +0100] "GET /.git/config HTTP/1.1" 403 3952 "-" "Mozilla/5. ...
show more
104.207.49.251 - - [12/Feb/2026:16:39:36 +0100] "GET /.git/config HTTP/1.1" 403 3952 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-12 14:35:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 12 09:34:55.038984 2026] [security2:error] [pid 30684:tid 30684] [client 104.207.49.251:26391] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "archaiusmusic.com"] [uri "/.git/config"] [unique_id "aY3lD8A7Ceaer-OgoYMZPQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-10 23:01:09
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-10
Hacking
Web App Attack
SSH
๐ฉ๐ช
conseilgouz
2026-02-10 16:42:17
(3 months ago)
coe-17 : Block hidden directories=>/.env.save(/)
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-10 03:56:25
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:56:15.716631 2026] [security2:error] [pid 12552:tid 12552] [client 104.207.49.251:31123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gervais-family.com"] [uri "/test/.git/config"] [unique_id "aYqsXxDWx9AMbqGtyQ5heAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:54:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:54:30.643610 2025] [security2:error] [pid 14908:tid 14908] [client 104.207.49.251:45285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.robotrodeo.net"] [uri "/.svn/wc.db"] [unique_id "aSVSpl9RR-3f17Ffh_M2_wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:54:16
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:54:12.546882 2025] [security2:error] [pid 16019:tid 16019] [client 104.207.49.251:51943] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.karinproctor.com"] [uri "/.svn/wc.db"] [unique_id "aSVEhHBUv191bI-KxgmDQQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack