๐ฉ๐ช
thesimonmanuel
2026-07-23 20:57:56
(1 day ago)
172.111.80.27 - - [24/Jul/2026:02:27:56 +0530] "GET /.git/config HTTP/1.1" 403 146 "-" "Mozilla/5.0 ...
show more
172.111.80.27 - - [24/Jul/2026:02:27:56 +0530] "GET /.git/config HTTP/1.1" 403 146 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0" "-"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-23 19:15:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 15:15:25.173787 2026] [security2:error] [pid 3659747:tid 3659747] [client 172.111.80.27:16360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cnwire.com"] [uri "/.git/HEAD"] [unique_id "amJoTasdhGsY2Dw5EAX2JQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 15:12:30
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 11:12:25.220112 2026] [security2:error] [pid 926098:tid 926098] [client 172.111.80.27:3410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sieder.com"] [uri "/.git/HEAD"] [unique_id "amDd2SeXBumiNJeo0Y_rQQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 12:30:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 08:30:35.522580 2026] [security2:error] [pid 919029:tid 919029] [client 172.111.80.27:19636] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "giganticmediallc.com"] [uri "/.git/HEAD"] [unique_id "amC36zGTa07BOzc3AlrBcQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:00:22
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:00:14.790691 2026] [security2:error] [pid 23457:tid 23457] [client 172.111.80.27:28400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kristywernerauthor.com"] [uri "/.git/HEAD"] [unique_id "al6ofiPW3zgXp_4g8u6S2AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 03:29:53
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 23:29:46.659045 2026] [security2:error] [pid 12148:tid 12164] [client 172.111.80.27:3266] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.soonervolunteer.com"] [uri "/.git/HEAD"] [unique_id "alxEqtCZ74PQZlf0aYA43gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 01:34:18
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 21:34:14.352700 2026] [security2:error] [pid 1989036:tid 1989036] [client 172.111.80.27:2494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.crescentcitycafe.net"] [uri "/.git/HEAD"] [unique_id "alwplgjL2uwLG-z8rsWieQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-18 04:23:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 00:23:05.437692 2026] [security2:error] [pid 1388580:tid 1388580] [client 172.111.80.27:32262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jacinc.net"] [uri "/.git/HEAD"] [unique_id "alr_qc23nC7KslYquYbZDAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 22:48:02
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 18:47:53.634195 2026] [security2:error] [pid 1384960:tid 1384960] [client 172.111.80.27:23326] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magicalgirlcrafts.com.ketsuri.com"] [uri "/.git/HEAD"] [unique_id "alqxGZnfIl1PNnqcbWGdqAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
VHosting
2026-07-17 05:50:04
(1 week ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-16 11:39:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 07:39:37.710603 2026] [security2:error] [pid 4726:tid 4816] [client 172.111.80.27:37428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frankfurthedgefund.aafm.us"] [uri "/.git/config"] [unique_id "aljC-RiaR1oQXTaIYTf0agAAAYg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-16 08:10:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 04:10:44.157333 2026] [security2:error] [pid 26398:tid 26398] [client 172.111.80.27:15324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flinthillsveterans.org"] [uri "/.git/HEAD"] [unique_id "aliSBEhQ-2nT3ezx3vyJqwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-16 05:28:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 01:28:49.001688 2026] [security2:error] [pid 15189:tid 15189] [client 172.111.80.27:47334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.corinthianscruise.org"] [uri "/.git/HEAD"] [unique_id "alhsEYUH7Cj1M-IW8vh7XAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-16 04:54:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 00:54:30.880246 2026] [security2:error] [pid 10714:tid 10714] [client 172.111.80.27:38300] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.drschneedle.org"] [uri "/.git/HEAD"] [unique_id "alhkBgeiKaLvA94oSWxIJgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-15 06:42:09
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.80.27 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 02:42:02.394043 2026] [security2:error] [pid 1223:tid 1223] [client 172.111.80.27:3014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lonestaredgeworks.com"] [uri "/.git/config"] [unique_id "alcrupfqEHDUlMsAyzLZKAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack