๐บ๐ธ
TPI-Abuse
2026-06-02 09:22:42
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 05:22:35.381132 2026] [security2:error] [pid 9830:tid 9830] [client 172.69.214.14:12557] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.huntforvets.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.huntforvets.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ah6g293U65q4AU6XIkVYNgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-31 21:35:09
(1 week ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-25 00:23:01
(2 weeks ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-13 15:04:37
(4 weeks ago)
Aggressive web scan
Web App Attack
Anonymous
2026-05-08 11:34:57
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-07 07:13:18
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
Anonymous
2026-05-05 03:39:23
(1 month ago)
Web App Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 01:25:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 21:25:11.626398 2026] [security2:error] [pid 12220:tid 12220] [client 172.69.214.14:12822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.stoutmen.com"] [uri "/api/.env"] [unique_id "adG59xZsFthBXfkJe9WqygAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 22:32:07
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 18:31:53.600428 2026] [security2:error] [pid 13432:tid 13432] [client 172.69.214.14:13813] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.hisim.com.tr"] [uri "/.env.old"] [unique_id "adGRWZX2lpbbbOH--47esgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 21:17:07
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 17:16:59.510157 2026] [security2:error] [pid 21423:tid 21423] [client 172.69.214.14:9232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.jrpiano.com"] [uri "/.env_backup"] [unique_id "adF_y3EDgvKrqCKfJfQlKQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 15:17:58
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 11:17:52.905890 2026] [security2:error] [pid 762:tid 762] [client 172.69.214.14:9595] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mathewsdental.com"] [uri "/admin/.env"] [unique_id "adEroNLMY39G5YiYgcTz2AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 13:55:29
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 09:55:25.332905 2026] [security2:error] [pid 8917:tid 8917] [client 172.69.214.14:13171] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.printpackcomplete.com"] [uri "/.env.orig"] [unique_id "adEYTbQNW0cazzHRWChJygAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 07:39:28
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 03:39:20.387056 2026] [security2:error] [pid 30394:tid 30394] [client 172.69.214.14:14060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unitedfuturistassociation.com"] [uri "/.env.backup"] [unique_id "adDAKMg7tzaXqp8rxWFzdAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 07:05:34
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 03:05:29.798038 2026] [security2:error] [pid 15344:tid 15344] [client 172.69.214.14:13522] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.wwts.io"] [uri "/.env.json"] [unique_id "adC4OZEA1XNeuYdaLWRyvQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 06:13:57
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.214.14 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 02:13:52.757624 2026] [security2:error] [pid 5362:tid 5364] [client 172.69.214.14:11863] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.planmytrust.com"] [uri "/web/.env"] [unique_id "adCsIHLLferMzahbZWGingAAAQA"]
show less
Brute-Force
Bad Web Bot
Web App Attack