๐บ๐ธ
mnsf
2026-06-02 16:05:21
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ท๐บ
DZBOT
2026-05-22 16:07:56
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-05-21 03:13:58
(3 weeks ago)
(caddyscan) Scanner path probe from 172.69.151.49 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; ...
show more
(caddyscan) Scanner path probe from 172.69.151.49 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 172.69.151.49 - - [21/May/2026:02:40:41 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.69.151.49 - - [21/May/2026:02:41:08 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.69.151.49 - - [21/May/2026:02:49:14 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.69.151.49 - - [21/May/2026:02:52:30 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.69.151.49 - - [21/May/2026:03:13:53 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-09 06:31:42
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 02:31:34.518041 2026] [security2:error] [pid 20889:tid 20889] [client 172.69.151.49:14156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gaudensinnovo.com"] [uri "/.git/config"] [unique_id "af7UxjqsuqOjiIB02aTOpAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-05-08 14:44:45
(1 month ago)
wordpress scan on 212.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-04 14:13:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 10:13:02.494989 2026] [security2:error] [pid 12800:tid 12800] [client 172.69.151.49:10996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "monogay.org"] [uri "/.git/config"] [unique_id "afipbo4unQxSLxwVlp1NGwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 17:22:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 13:22:00.310098 2026] [security2:error] [pid 30846:tid 30884] [client 172.69.151.49:10508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.aeaus.com"] [uri "/.git/config"] [unique_id "afOPuIzWFS_q1Be6POZxkwAAAVc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 16:38:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 12:38:17.549842 2026] [security2:error] [pid 2289:tid 2289] [client 172.69.151.49:10747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.camasmarket.com"] [uri "/.git/config"] [unique_id "afIz-edfP4b_N9kdPwOFowAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 16:55:56
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 12:55:50.727645 2026] [security2:error] [pid 10644:tid 10644] [client 172.69.151.49:12016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nuegrapes.com"] [uri "/.git/config"] [unique_id "ae5Dlg8bguzBuyB3oeOhqwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 01:15:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 21:15:02.319929 2026] [security2:error] [pid 20615:tid 20615] [client 172.69.151.49:12233] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jdhunterlaw.com"] [uri "/.git/config"] [unique_id "aewVlq49giB6I7xIV89PwQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 17:27:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 13:27:25.358415 2026] [security2:error] [pid 6907:tid 6907] [client 172.69.151.49:10770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3-6trucking.com"] [uri "/.git/config"] [unique_id "aepWffiBRHvCY6PsSJ0VKQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-23 16:49:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 23 12:48:53.340961 2026] [security2:error] [pid 18779:tid 18779] [client 172.69.151.49:12724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clinicacero.com"] [uri "/.git/config"] [unique_id "aepNddNtfOr5ENKzQG0-YgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-21 12:12:11
(1 month ago)
2026-04-21T14:12:06.123028+02:00 nimbus sshd[293863]: pam_unix(sshd:auth): authentication failure; l ...
show more
2026-04-21T14:12:06.123028+02:00 nimbus sshd[293863]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.69.151.49
2026-04-21T14:12:07.761737+02:00 nimbus sshd[293863]: Failed password for invalid user deployer from 172.69.151.49 port 30776 ssh2
2026-04-21T14:12:10.782165+02:00 nimbus sshd[293867]: Invalid user student from 172.69.151.49 port 26966
...
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-04-06 07:56:48
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 03:56:42.530705 2026] [security2:error] [pid 9988:tid 9988] [client 172.69.151.49:10814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.intolifeproductions.com"] [uri "/.git/HEAD"] [unique_id "adNnOvvvAoOpmT4JRToPawAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 05:46:57
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.151.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 01:46:50.686687 2026] [security2:error] [pid 14862:tid 14862] [client 172.69.151.49:9595] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.carolynedds.com"] [uri "/.git/logs/HEAD"] [unique_id "adNIygWMaJwOpqLDpaucBgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack