๐บ๐ธ
TPI-Abuse
2026-08-21 12:28:15
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 08:28:09.708103 2026] [security2:error] [pid 27669:tid 27669] [client 172.69.222.167:13791] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.wfowisdom.com"] [uri "/.git/HEAD"] [unique_id "aohEWScyqsOvhcQ1jQreIwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 08:11:02
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 04:10:57.894457 2026] [security2:error] [pid 3500:tid 3500] [client 172.69.222.167:11196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.brunerdevelopment.com"] [uri "/.git/config"] [unique_id "aogIEY2WHbkocck_c66YewAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 04:56:04
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 00:55:59.191808 2026] [security2:error] [pid 19662:tid 19662] [client 172.69.222.167:11249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.billhoy.com"] [uri "/.git/config"] [unique_id "aofaXy_ypcGEimPhyrL74wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 18:27:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 14:27:23.364789 2026] [security2:error] [pid 18123:tid 18123] [client 172.69.222.167:12304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.partybusdet.com"] [uri "/.git/HEAD"] [unique_id "aodHC1okbgI-QZjQMgr2VQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 03:15:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 23:15:19.020028 2026] [security2:error] [pid 9593:tid 9593] [client 172.69.222.167:10225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kimmimorikawa.com"] [uri "/.git/config"] [unique_id "aoZxR4PW1IYWQWWTifwIuAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:39:57
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:39:49.376754 2026] [security2:error] [pid 23154:tid 23154] [client 172.69.222.167:11392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tiffanynovelty.com"] [uri "/.git/config"] [unique_id "aoZM1bUpbqg6ztxhTdoC_gAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 00:04:14
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 20:04:07.427917 2026] [security2:error] [pid 1136:tid 1136] [client 172.69.222.167:10707] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.maycockfamily.com"] [uri "/.git/config"] [unique_id "aoTy92dsv9US03OP_ZbaqgAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 10:17:29
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 06:17:22.621202 2026] [security2:error] [pid 25976:tid 25976] [client 172.69.222.167:13242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hyps.com"] [uri "/.git/HEAD"] [unique_id "aoQxMqyRWb5z_L9dg5KtSAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:34:18
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:34:09.806257 2026] [security2:error] [pid 8582:tid 8582] [client 172.69.222.167:11435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.johnatuttle.com"] [uri "/.git/config"] [unique_id "aoPEodikFB0IqvwdcqVTggAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Baking333
2026-07-30 10:06:43
(3 weeks ago)
[redacted] 172.69.222.167 - - [30/Jul/2026:11:06:40 +0100] "GET /fr/.aws/[redacted]/ HTTP/2.0" 404 1 ...
show more
[redacted] 172.69.222.167 - - [30/Jul/2026:11:06:40 +0100] "GET /fr/.aws/[redacted]/ HTTP/2.0" 404 135075 "-" "curl/8.7.1" [redacted] 172.69.222.167 - - [30/Jul/2026:11:06:41 +0100] "GET /.aws/[redacted] HTTP/2.0" 301 109 "-" "curl/8.7.1"
show less
Bad Web Bot
Web App Attack
๐ฌ๐ง
cg-design.co.uk
2026-07-29 06:01:22
(3 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 172.69.222.167 (FR/France/-)
SQL Injection
๐บ๐ธ
mawan
2026-07-27 14:20:35
(3 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-07-22 01:19:44
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-16 22:01:32
(1 month ago)
Auto-ban: >3000 req/min op 2026-07-16
Web App Attack
SSH
Hacking
๐ฌ๐ง
OptimusGO
2026-07-16 01:26:32
(1 month ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-07-16 02:26:32 UTC
Log evidence:
172.69.222.167 - - [16/Jul/2026:02:26:28 +0100] "GET /data/server%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
07/16/2026-02:26:28.958694 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.69.222.167:12560 -> 185.127.18.66:80
show less
Port Scan
Brute-Force