๐ง๐ช
madeit
2026-09-01 05:59:15
(8 hours ago)
Web App Attack
Anonymous
2026-08-31 19:40:36
(18 hours ago)
Web Probe / Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 12:41:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 08:41:49.376779 2026] [security2:error] [pid 5567:tid 5567] [client 104.22.102.86:10073] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bostonmarathonstories.bostonlog.com"] [uri "/.git/config"] [unique_id "aoMBjSNq_SKn3bAgpuKeOQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 11:21:58
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 07:21:52.601582 2026] [security2:error] [pid 30300:tid 30300] [client 104.22.102.86:11171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.weavergroup.us"] [uri "/.git/config"] [unique_id "aoLu0EpdrRr_sqdLXAMazgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:23:57
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:23:52.378139 2026] [security2:error] [pid 25017:tid 25017] [client 104.22.102.86:9604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ellestark.com"] [uri "/.git/config"] [unique_id "aoLFGCdUV-Mcw2IzxcSxjwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:33:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:33:00.075769 2026] [security2:error] [pid 24484:tid 24484] [client 104.22.102.86:10259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.univey.com"] [uri "/.git/HEAD"] [unique_id "aoKrHOkeGxjkrAzH-8biKAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-17 00:33:07
(2 weeks ago)
[MonAug1702:33:01.8761792026][security2:error][pid1100851:tid1100861][client104.22.102.86:0]ModSecur ...
show more
[MonAug1702:33:01.8761792026][security2:error][pid1100851:tid1100861][client104.22.102.86:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.nuovosito.gruppobalu.com\"][uri\"/.git/config\"][unique_id\"aoJWve0OoTNKtGcB71_VDgAAAAc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:53:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:53:16.494900 2026] [security2:error] [pid 4676:tid 4709] [client 104.22.102.86:12145] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "a.my-drug-store.kylight.com"] [uri "/.git/config"] [unique_id "aoFsbMx_4gFov4n9sqmJjwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:29:43
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:29:37.965060 2026] [security2:error] [pid 17117:tid 17117] [client 104.22.102.86:12865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ergocorrect.com"] [uri "/.git/HEAD"] [unique_id "aoEuobyPITd-Bf4t4KY3FwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 17:58:28
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 13:58:24.796550 2026] [security2:error] [pid 2311929:tid 2311929] [client 104.22.102.86:14266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brownbarn.com"] [uri "/.git/HEAD"] [unique_id "an4FwKrtsAPP0KFR6knudQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-08-13 11:32:33
(2 weeks ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 12:27:37
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 08:27:33.391674 2026] [security2:error] [pid 1829614:tid 1829614] [client 104.22.102.86:12287] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.grandpont-house.org"] [uri "/.git/config"] [unique_id "ansVNXq9A8PUMLh0DdobUQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 05:19:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 01:19:01.980086 2026] [security2:error] [pid 1891954:tid 1891954] [client 104.22.102.86:11323] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.multilize.com"] [uri "/.git/HEAD"] [unique_id "anqwxd1S_njpUHouV1vEaAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-06 02:49:04
(3 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 06:32:20
(2 months ago)
(mod_security) mod_security (id:949110) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 104.22.102.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 02:32:09.462296 2026] [security2:error] [pid 10758:tid 10758] [client 104.22.102.86:13244] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.forum.freedrm.org"] [uri "/.env.backup"] [unique_id "ajeFaRJwDBWlt-zwuphbLQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack