๐ง๐ช
voormedia
2026-03-05 16:09:59
(3 months ago)
Accessed trap at '/.aws/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 08:18:11
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 03:18:05.505906 2026] [security2:error] [pid 2915:tid 2926] [client 104.207.54.34:24445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.howardhallis.com"] [uri "/.git/objects/83/a809feff399b8d1576c9f37043539552fcf0d9"] [unique_id "aak8PWbdh7c6FWT9QFVOoAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-05 06:34:16
(3 months ago)
(mod_security) mod_security (id:211190) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:211190) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 05 01:34:09.084839 2026] [security2:error] [pid 21433:tid 21433] [client 104.207.54.34:58603] ModSecurity: Access denied with code 403 (phase 2). Match of "contains cpanel" against "REQUEST_URI" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "55"] [id "211190"] [rev "9"] [msg "COMODO WAF: Remote File Access Attempt||www.catholicshopper.com|F|2"] [data "Matched Data: /etc/ found within REQUEST_URI: /view.php?file=../../../../../../../../../../etc/passwd"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.catholicshopper.com"] [uri "/view.php"] [unique_id "aakj4e0-3WvOjUy1UZbruwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-01-13 03:10:02
(5 months ago)
(mod_security-custom) mod_security (id:210492) triggered by 104.207.54.34 (DE/Germany/State of Berli ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 104.207.54.34 (DE/Germany/State of Berlin/Berlin/-/[AS200373 DREI-K-TECH-GMBH]): 1 in the last 3600 secs (0-srv1)
show less
Hacking
Anonymous
2026-01-05 20:20:26
(5 months ago)
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 9 time(s); last attempt for 2026.01.05 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-12-21 11:30:09
(6 months ago)
Attempted brute force login to web vpn 126 time(s); last attempt for 2025.12.21 is noted in report t ...
show more
Attempted brute force login to web vpn 126 time(s); last attempt for 2025.12.21 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-12-19 23:38:05
(6 months ago)
Attempted brute force login to web vpn 145 time(s); last attempt for 2025.12.19 is noted in report t ...
show more
Attempted brute force login to web vpn 145 time(s); last attempt for 2025.12.19 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-11-26 05:59:43
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:59:38.073225 2025] [security2:error] [pid 14491:tid 14491] [client 104.207.54.34:18237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.slattery-law.com"] [uri "/.git/HEAD"] [unique_id "aSaXSqmle74CPjRtbN79XAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:08:02
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:07:56.830839 2025] [security2:error] [pid 948:tid 948] [client 104.207.54.34:60939] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.hteca.com"] [uri "/.git/HEAD"] [unique_id "aSZvDFs8syOU3SyQ-z4TNwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 07:29:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 02:29:43.817697 2025] [security2:error] [pid 4881:tid 4881] [client 104.207.54.34:41251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maps.marat.info"] [uri "/.env"] [unique_id "aSVa51Bki6SNo2pB-nYj8wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 06:24:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 01:24:19.609815 2025] [security2:error] [pid 5361:tid 5361] [client 104.207.54.34:28763] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.parkgrant.com"] [uri "/.svn/wc.db"] [unique_id "aSVLk5QDqakAdD3vkj_mUgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:42:47
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:42:41.192730 2025] [security2:error] [pid 4473:tid 4473] [client 104.207.54.34:34121] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.keyston.net"] [uri "/.env"] [unique_id "aSVB0YEwKDtHcherfVfwawAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:14:06
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:13:56.962153 2025] [security2:error] [pid 1817001:tid 1817045] [client 104.207.54.34:20835] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oldestgunclub.aafm.us"] [uri "/.git/HEAD"] [unique_id "aSU7FGR1ttxeyDpsCa9q-wAAAYY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:42:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:42:50.069986 2025] [security2:error] [pid 1744:tid 1744] [client 104.207.54.34:13469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lamariposagallery.com"] [uri "/.svn/wc.db"] [unique_id "aSUzystWMrwmfcvLvXwv1wAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:26:10
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.54.34 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:26:03.491715 2025] [security2:error] [pid 19885:tid 19885] [client 104.207.54.34:31917] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bowerwood.com"] [uri "/.svn/wc.db"] [unique_id "aSUv27Yb2kS3sUKUAk6cLgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack