π©πͺ
bescared
2026-06-05 15:24:00
(5 days ago)
WAF (2) - Malicious activity detected: URL probing.
Bad Web Bot
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-06-02 20:16:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 16:16:48.653737 2026] [security2:error] [pid 26601:tid 26601] [client 172.69.150.46:10613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "personal-sportswear.com"] [uri "/.git/config"] [unique_id "ah86MO0om5KephlV7N8dqwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-06-02 09:07:01
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
π·πΊ
DZBOT
2026-05-19 22:11:26
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-05-15 00:29:03
(3 weeks ago)
2026-05-15T02:25:49.719538+02:00 nimbus sshd[145920]: Failed password for invalid user admini from 1 ...
show more
2026-05-15T02:25:49.719538+02:00 nimbus sshd[145920]: Failed password for invalid user admini from 172.69.150.46 port 45832 ssh2
2026-05-15T02:29:00.526448+02:00 nimbus sshd[145985]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.69.150.46 user=root
2026-05-15T02:29:02.592108+02:00 nimbus sshd[145985]: Failed password for root from 172.69.150.46 port 26528 ssh2
...
show less
Brute-Force
SSH
πΊπΈ
TPI-Abuse
2026-05-04 14:13:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 10:13:04.411054 2026] [security2:error] [pid 17778:tid 17778] [client 172.69.150.46:10387] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.monogay.org"] [uri "/.git/config"] [unique_id "afipcIqOze4tjNCY66_G1AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-01 03:24:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 23:23:59.434735 2026] [security2:error] [pid 16972:tid 16972] [client 172.69.150.46:10889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "infojeffreysbay.com"] [uri "/.env.save"] [unique_id "afQcz3ZusRqW0IXOnH2AMQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 12:23:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 08:22:54.687601 2026] [security2:error] [pid 10284:tid 10284] [client 172.69.150.46:13264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.dbfitwell.com"] [uri "/.git/config"] [unique_id "afNJnhYwfCgyjYh_kmZrlQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-29 09:33:41
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 05:33:33.910427 2026] [security2:error] [pid 22498:tid 22498] [client 172.69.150.46:9312] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thecrossing1.com.restorationclinic1.com"] [uri "/.git/config"] [unique_id "afHQbUvdh0cCzSLogJdFqwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
WellSpring
2026-04-26 17:59:15
(1 month ago)
wordpress scan on beatwatch.org/wp-admin/install.php β WellSpr.ing/NetSentinel civic-AI security lay ...
show more
wordpress scan on beatwatch.org/wp-admin/install.php β WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
Anonymous
2026-04-18 00:31:27
(1 month ago)
[Sat Apr 18 02:31:26.864678 2026] [authz_core:error] [pid 4797] [client 172.69.150.46:13839] AH01630 ...
show more
[Sat Apr 18 02:31:26.864678 2026] [authz_core:error] [pid 4797] [client 172.69.150.46:13839] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Apr 18 02:31:27.161328 2026] [authz_core:error] [pid 4797] [client 172.69.150.46:13839] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Apr 18 02:31:27.212693 2026] [authz_core:error] [pid 4797] [client 172.69.150.46:13839] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-09 01:24:04
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 21:23:56.264391 2026] [security2:error] [pid 4048414:tid 4048414] [client 172.69.150.46:10615] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boardinjapan.com"] [uri "/.git/refs/heads/main"] [unique_id "adb_rGeSPaLUq3Hq58dLmAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 17:58:13
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 13:58:07.006129 2026] [security2:error] [pid 270799:tid 270799] [client 172.69.150.46:10316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.flinthillsveterans.org"] [uri "/.git/refs/heads/main"] [unique_id "adP0L4TWyaskOsq-t1tpnQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-05 00:04:08
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 20:04:03.896330 2026] [security2:error] [pid 7108:tid 7108] [client 172.69.150.46:13199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-spain.com"] [uri "/app/.env"] [unique_id "adGm84OsKVFkx_MTxHXk_wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-04 18:22:09
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.150.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 14:22:03.390026 2026] [security2:error] [pid 7289:tid 7289] [client 172.69.150.46:12971] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.proyectos.gabosoftware.com"] [uri "/.git/index"] [unique_id "adFWyxIg4ap5U9vgOidNSwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack