๐บ๐ธ
TPI-Abuse
2026-07-26 15:12:49
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 11:12:43.844148 2026] [security2:error] [pid 836255:tid 836271] [client 172.111.80.110:50978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.pluralmatrix.com"] [uri "/.git/HEAD"] [unique_id "amYj60BmUorrigfHazTj4QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 23:35:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 19:35:31.340397 2026] [security2:error] [pid 1971158:tid 1971158] [client 172.111.80.110:22104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.prezence.com"] [uri "/.git/HEAD"] [unique_id "amP2w6uogNC89z-iV4a47gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 19:29:48
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 15:29:39.920188 2026] [security2:error] [pid 17280:tid 17297] [client 172.111.80.110:39836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ep-dh.com"] [uri "/.git/HEAD"] [unique_id "amJrowBaRgOmoW82sArHqQAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-07-22 19:24:17
(4 days ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 172.111.80.110 - - [22/Jul/2026:22:24:17 +0300] " ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 172.111.80.110 - - [22/Jul/2026:22:24:17 +0300] "GET /.git/HEAD HTTP/1.1" 403 6319 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-21 23:20:35
(5 days ago)
Try to access /.git/HEAD
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 18:51:44
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:51:40.443289 2026] [security2:error] [pid 6344:tid 6344] [client 172.111.80.110:25818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.karendraughon.com"] [uri "/.git/config"] [unique_id "al5uPNjSBo-qyatrsv5kfwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-20 05:11:00
(1 week ago)
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-07-19 17:56:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 13:56:13.874405 2026] [security2:error] [pid 3858392:tid 3858392] [client 172.111.80.110:55984] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.oss-in-atm.info"] [uri "/.git/HEAD"] [unique_id "al0PvQa3oA3iF5rpmxiV6wAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 15:58:18
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 11:58:09.772897 2026] [security2:error] [pid 2424755:tid 2424755] [client 172.111.80.110:2918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.brookedramer.com"] [uri "/.git/config"] [unique_id "alz0EYLBvYJjk4l_j7ggAgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 13:12:02
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 09:11:57.369540 2026] [security2:error] [pid 10248:tid 10248] [client 172.111.80.110:27396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.modalsoftware.mainstreetofficesuites.com"] [uri "/.git/HEAD"] [unique_id "alzNHdD40YWigUQJeqpDYwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 11:31:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 07:31:25.473247 2026] [security2:error] [pid 14268:tid 14268] [client 172.111.80.110:30076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.amybeam.com"] [uri "/.git/config"] [unique_id "aly1jbmc7-y4n2TYmtaoLAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 18:53:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 14:53:14.591119 2026] [security2:error] [pid 1094049:tid 1094049] [client 172.111.80.110:53444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.southernislands.com"] [uri "/.git/config"] [unique_id "alp6Gn0TH_4cZJyPzEVL1QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 12:39:09
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 08:39:02.959033 2026] [security2:error] [pid 499:tid 499] [client 172.111.80.110:41342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.aeomis.com"] [uri "/.git/HEAD"] [unique_id "aloiZqDZWf-8bCezXodOOwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 10:22:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 06:22:07.281095 2026] [security2:error] [pid 708011:tid 708011] [client 172.111.80.110:39410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cherryblossomplayers.com"] [uri "/.git/config"] [unique_id "aloCT78sWYjqp3snbno-SgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-17 06:00:05
(1 week ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack