๐ณ๐ฑ
Eric
2026-07-22 12:24:06
(1 day ago)
[Wed Jul 22 12:23:53.595833 2026] [security2:error] [pid 1867017:tid 1867017] [client 172.111.91.59: ...
show more
[Wed Jul 22 12:23:53.595833 2026] [security2:error] [pid 1867017:tid 1867017] [client 172.111.91.59:5676] [client 172.111.91.59] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/.git/config"] [unique_id "amC2Wf0nilN6Ryk4Bk3YCgAAABo"]
[Wed Jul 22 12:24:05.351333 2026] [security2:error] [pid 1867008:tid 1867008] [client 172.111.91.59:44432] [client 172.111.91.59] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [s
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 01:35:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 21:35:40.061775 2026] [security2:error] [pid 9638:tid 9654] [client 172.111.91.59:54022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.catch-22productions.com"] [uri "/.git/HEAD"] [unique_id "amAebGUomgPOD8m7sU1W4gAAAUg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 23:42:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 19:42:51.333797 2026] [security2:error] [pid 38967:tid 38967] [client 172.111.91.59:12412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.princessnapkins.com"] [uri "/.git/HEAD"] [unique_id "amAD-_5n9FVFn486UH08BgAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 22:43:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 18:43:48.559436 2026] [security2:error] [pid 13460:tid 13460] [client 172.111.91.59:42282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grupoporvenir.com"] [uri "/.git/HEAD"] [unique_id "al_2JJYhogOK-kg1h64a6wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 20:39:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:39:10.722228 2026] [security2:error] [pid 30529:tid 30529] [client 172.111.91.59:45032] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ikutabukkyokai.com"] [uri "/.git/HEAD"] [unique_id "al_Y7hutVMxx3zahmbABYwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 15:46:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 11:46:04.280072 2026] [security2:error] [pid 22023:tid 22023] [client 172.111.91.59:44322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.catherineclayton.com"] [uri "/.git/HEAD"] [unique_id "al-UPDTqRI1Yz8ZuSKPPWAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 14:38:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 10:38:08.940740 2026] [security2:error] [pid 27600:tid 27600] [client 172.111.91.59:63544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.angove.biz"] [uri "/.git/HEAD"] [unique_id "al-EUOMMmMAN4TpdH9zAJAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 10:10:31
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:10:24.907926 2026] [security2:error] [pid 3687798:tid 3687800] [client 172.111.91.59:26958] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.featherston.ws"] [uri "/.git/HEAD"] [unique_id "al9FkBo4R10xL4vubdFMsQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-21 10:09:11
(2 days ago)
Try to access /.git/HEAD
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 09:05:49
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 05:05:43.789076 2026] [security2:error] [pid 25968:tid 26109] [client 172.111.91.59:20024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.barnett-ranch.com"] [uri "/.git/config"] [unique_id "al82Z4uSLXTQSEo70YsrGgAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 00:17:52
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:17:45.649114 2026] [security2:error] [pid 3718890:tid 3718890] [client 172.111.91.59:39926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.arcticwarriors.org"] [uri "/.git/HEAD"] [unique_id "al66qSGIcgPHb3TNunEUrwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:55:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:54:57.355007 2026] [security2:error] [pid 16503:tid 16503] [client 172.111.91.59:28630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.fgrotary.org"] [uri "/.git/HEAD"] [unique_id "al61UazBgX0g_Q5nDQtGLgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:35:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:35:42.078366 2026] [security2:error] [pid 31161:tid 31161] [client 172.111.91.59:55638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goldenvalley1.com"] [uri "/.git/HEAD"] [unique_id "al6wzoEtrbdMJrgmH6216gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:09:53
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:09:46.350969 2026] [security2:error] [pid 25251:tid 25251] [client 172.111.91.59:62494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kinnaird.enterprises"] [uri "/.git/HEAD"] [unique_id "al6quolTrs4iNpIsDQqMEQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 18:21:57
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.91.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:21:44.887071 2026] [security2:error] [pid 1327732:tid 1327732] [client 172.111.91.59:59864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "volollc.com"] [uri "/.git/HEAD"] [unique_id "al5nOJwpvlzRayumhW8fwAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack