๐บ๐ธ
TPI-Abuse
2026-08-25 14:03:04
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:02:58.658051 2026] [security2:error] [pid 26239:tid 26239] [client 172.69.222.182:13231] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.owenmail.com"] [uri "/.git/config"] [unique_id "ao2gkmYP3gUh5EuvNvKzXwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:23:22
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:23:17.353683 2026] [security2:error] [pid 9488:tid 9488] [client 172.69.222.182:9520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "prcomputersolutions.com.anthonyanimalclinic.net"] [uri "/.git/config"] [unique_id "ao1Q9VV-2PP2EUWi1wQobQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 22:58:00
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 18:57:53.324483 2026] [security2:error] [pid 22199:tid 22199] [client 172.69.222.182:10274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.plazacristal.com"] [uri "/.git/HEAD"] [unique_id "aozMcaDCuAKFfHk-BVd4ugAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 09:09:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 05:09:49.268736 2026] [security2:error] [pid 14972:tid 14972] [client 172.69.222.182:11771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kfraser.com"] [uri "/.git/config"] [unique_id "aowKXcPBCQD0f9LWEHsDvgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:24:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.182 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:23:55.242054 2026] [security2:error] [pid 30497:tid 30497] [client 172.69.222.182:11706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.greensandbeans.us"] [uri "/.git/HEAD"] [unique_id "aoFJa1qGRQ97H-zZTgjfcAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-07-17 19:07:23
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-08 04:14:30
(1 month ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-02 04:13:30
(1 month ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-28 04:12:52
(1 month ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-27 04:07:59
(1 month ago)
Wordpress malicious attack:[octawp]
Web App Attack
Anonymous
2026-06-26 12:54:27
(1 month ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
OptimusGO
2026-06-25 10:48:50
(2 months ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-06-25 11:48:50 UTC
Log evidence:
172.69.222.182 - - [25/Jun/2026:11:48:46 +0100] "GET /_next/static/chunks/webpack-[hash].js HTTP/1.1" 404 118 "-" "curl/8.7.1"
06/25/2026-11:48:46.537946 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.69.222.182:13583 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
๐ฒ๐ฝ
octageeks.com
2026-06-25 04:06:15
(2 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐ฌ๐ง
pinguin
2026-06-24 16:21:22
(2 months ago)
Triggered Cloudflare WAF (firewallManaged) from FR.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from FR.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐ฒ๐ฝ
octageeks.com
2026-06-24 04:16:14
(2 months ago)
Wordpress malicious attack:[octablocked]
Web App Attack