πΊπΈ
TPI-Abuse
2026-09-02 08:38:09
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 04:38:03.113777 2026] [security2:error] [pid 11575:tid 11575] [client 141.101.96.53:9363] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aycart.es"] [uri "/.git/HEAD"] [unique_id "apfga1Xcq8kpJi-Ep5Ki5QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
craudiovizai
2026-08-31 12:31:34
(2 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked a ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/config. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
π«π·
pm33
2026-08-30 20:25:47
(3 days ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
π³π΄
jad-abuse
2026-08-30 18:18:00
(3 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 21:35:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 17:35:52.747665 2026] [security2:error] [pid 18462:tid 18462] [client 141.101.96.53:13102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.weismanovens.com"] [uri "/.git/HEAD"] [unique_id "apNQuK_rm27eE3A0QnAZlwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
paulshipley.com.au
2026-08-28 19:52:30
(5 days ago)
[Sat Aug 29 05:52:29.138255 2026] [security2:error] [pid 687873] [client 141.101.96.53:14298] [clien ...
show more
[Sat Aug 29 05:52:29.138255 2026] [security2:error] [pid 687873] [client 141.101.96.53:14298] [client 141.101.96.53] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/.git/HEAD"] [unique_id "apHm_Rhv8g_9HUoHWh7kMwAAAA8"]
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 13:30:09
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:30:00.918330 2026] [security2:error] [pid 844:tid 844] [client 141.101.96.53:10133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.rodamundo.blog"] [uri "/.git/config"] [unique_id "apGNWJRStpWAvkWeEeLqCQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 09:30:47
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:30:41.955925 2026] [security2:error] [pid 12351:tid 12351] [client 141.101.96.53:13980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abcollie.com"] [uri "/.git/HEAD"] [unique_id "apFVQfEwQQh-KFBgsd_AhwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 23:53:03
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:52:57.843390 2026] [security2:error] [pid 25776:tid 25776] [client 141.101.96.53:12355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crystalshealinglights.com.my-spec.com"] [uri "/.git/HEAD"] [unique_id "apDN2V2Yi0A5HikaxWIU9gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 20:51:33
(6 days ago)
[Thu Aug 27 22:51:28.307968 2026] [authz_core:error] [pid 2335] [client 141.101.96.53:11565] AH01630 ...
show more
[Thu Aug 27 22:51:28.307968 2026] [authz_core:error] [pid 2335] [client 141.101.96.53:11565] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu Aug 27 22:51:32.478201 2026] [authz_core:error] [pid 2335] [client 141.101.96.53:11565] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu Aug 27 22:51:32.499272 2026] [authz_core:error] [pid 2335] [client 141.101.96.53:11565] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2026-08-27 15:30:09
(6 days ago)
| Multiple SQL injection attempts from same source ip.(multiple servers)
Web App Attack
Hacking
SQL Injection
πΊπΈ
TPI-Abuse
2026-08-27 13:35:52
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:35:45.783303 2026] [security2:error] [pid 493:tid 493] [client 141.101.96.53:13612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.blueskyfederal.com"] [uri "/.git/HEAD"] [unique_id "apA9McXSfUEu4EvvB0l6BwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 08:34:47
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:34:42.340056 2026] [security2:error] [pid 1512410:tid 1512477] [client 141.101.96.53:11940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.bacalodge.com"] [uri "/.git/HEAD"] [unique_id "ao_2oiUqsdKv42CNcx0-9QAAAU4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 16:18:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 12:17:59.559222 2026] [security2:error] [pid 23296:tid 23296] [client 141.101.96.53:12673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bacpool.com"] [uri "/.git/HEAD"] [unique_id "ao8Rt-mmJODwz99RnEJq-gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 07:44:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 141.101.96.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:44:04.817760 2026] [security2:error] [pid 3702:tid 3702] [client 141.101.96.53:11615] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.modelengines.info"] [uri "/.git/HEAD"] [unique_id "ao6ZRD8VIOgRqfD2d6cADwAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack