๐บ๐ธ
johnkarlhill
2026-09-16 05:43:32
(8 hours ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐บ๐ธ
johnkarlhill
2026-09-14 20:30:24
(1 day ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐บ๐ธ
johnkarlhill
2026-09-08 06:20:57
(1 week ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
๐ง๐ช
madeit
2026-09-02 08:05:34
(2 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 01:03:24
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 21:03:18.237183 2026] [security2:error] [pid 6851:tid 6877] [client 172.69.214.113:9754] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.internationalacademyoffinancialmanagement.com.aafm.us"] [uri "/.git/config"] [unique_id "aoZSVrH1JTzxbHJ6DACq3QAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-12 21:37:05
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-29 23:14:25
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 19:14:18.192467 2026] [security2:error] [pid 25189:tid 25189] [client 172.69.214.113:10734] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.btsalesrep.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.btsalesrep.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "akL8SltI7lV-pqt97D6U6wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-26 13:14:49
(2 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-26 16:12:33
(3 months ago)
(mod_security) mod_security (id:210730) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 12:12:29.056950 2026] [security2:error] [pid 32017:tid 32017] [client 172.69.214.113:12541] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.newcangroup.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.newcangroup.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ahXGbcLF-Quc8ubhVX9i7wAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 05:08:54
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 01:08:48.260945 2026] [security2:error] [pid 14981:tid 14981] [client 172.69.214.113:12398] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sourcecodeportal.com"] [uri "/.env2"] [unique_id "adHuYDqVQkwzhUvxkzrobQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 00:50:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 20:50:20.612081 2026] [security2:error] [pid 1232:tid 1315] [client 172.69.214.113:10536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.uniquelynoel.com"] [uri "/.env.local"] [unique_id "adGxzG3Y0TE8Ied9dntATwAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 17:46:22
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 13:46:14.850384 2026] [security2:error] [pid 26127:tid 26127] [client 172.69.214.113:12896] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.cofias.net"] [uri "/.env"] [unique_id "adFOZg-xX9zLmN1IN_n5OAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 14:43:08
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 10:42:58.162962 2026] [security2:error] [pid 4337:tid 4337] [client 172.69.214.113:12759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.iconconstructors.com"] [uri "/.env.test"] [unique_id "adEjcum51-f1V8c5n6YJ3AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 13:06:59
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 09:06:52.453967 2026] [security2:error] [pid 7217:tid 7217] [client 172.69.214.113:9764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.adampayments.com"] [uri "/.env.json"] [unique_id "adEM7MN5bRaTybEgsEbuKwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 11:29:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 07:29:24.640011 2026] [security2:error] [pid 4470:tid 4470] [client 172.69.214.113:9784] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.barkan.us"] [uri "/.env.tmp"] [unique_id "adD2FI7ETvMioXswTtNHEgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack