๐ง๐ฌ
Stoyko Stoykov
2026-09-14 14:54:12
(3 days ago)
172.69.222.229 - - [14/Sep/2026:17:54:12 +0300] "GET /admin_phpinfo%2ephp HTTP/2.0" 404 0 "-" "curl/ ...
show more
172.69.222.229 - - [14/Sep/2026:17:54:12 +0300] "GET /admin_phpinfo%2ephp HTTP/2.0" 404 0 "-" "curl/8.7.1"
...
show less
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-09-12 06:28:32
(5 days ago)
172.69.222.229 - - [12/Sep/2026:09:28:32 +0300] "GET /.env.backup HTTP/2.0" 404 0 "-" "Mozilla/5.0 ( ...
show more
172.69.222.229 - - [12/Sep/2026:09:28:32 +0300] "GET /.env.backup HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-09-09 06:12:42
(1 week ago)
172.69.222.229 - - [09/Sep/2026:09:12:41 +0300] "GET /.env HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Linux; ...
show more
172.69.222.229 - - [09/Sep/2026:09:12:41 +0300] "GET /.env HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Linux; Android 16; Pixel 10 Pro) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.0.0 Mobile Safari/537.36"
...
show less
Hacking
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2026-09-08 11:05:08
(1 week ago)
IM360 WAF: Infectors: Suspicious access attempt (webshell)
Brute-Force
FTP Brute-Force
Open Proxy
๐บ๐ธ
TPI-Abuse
2026-09-01 04:42:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:42:26.158652 2026] [security2:error] [pid 183197:tid 183259] [client 172.69.222.229:10634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strikeunosports.com"] [uri "/.git/HEAD"] [unique_id "apZXsj8jfmPUltgtwzF9JQAAAFQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 21:23:55
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 17:23:49.839776 2026] [security2:error] [pid 6888:tid 6888] [client 172.69.222.229:9812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juhoanttila.com"] [uri "/.git/HEAD"] [unique_id "apXw5VnnGr6HqC4m7ENOzAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-30 04:15:18
(2 weeks ago)
[SunAug3006:15:16.2614032026][security2:error][pid782045:tid782155][client172.69.222.229:0]ModSecuri ...
show more
[SunAug3006:15:16.2614032026][security2:error][pid782045:tid782155][client172.69.222.229:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.gustotondo.ch\"][uri\"/.git/config\"][unique_id\"apOuVGI616HEpbI4jpmxTAAAAQI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 21:53:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 17:53:37.846079 2026] [security2:error] [pid 7413:tid 7429] [client 172.69.222.229:12330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pref-realestate.com"] [uri "/.git/HEAD"] [unique_id "apIDYVN5b_pcN29AT0mGmQAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 14:24:30
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 10:24:26.959839 2026] [security2:error] [pid 15793:tid 15793] [client 172.69.222.229:11475] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jhonbens.com"] [uri "/.git/HEAD"] [unique_id "apGaGmExWFN9hQ6zjHpk9QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 03:54:29
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 23:54:20.806685 2026] [security2:error] [pid 18077:tid 18077] [client 172.69.222.229:11198] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chiller.cloudex.link"] [uri "/.git/HEAD"] [unique_id "apEGbKBEc6NzwEuQn-T2fAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 04:32:18
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:32:13.837903 2026] [security2:error] [pid 15812:tid 15839] [client 172.69.222.229:11827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.advertisingfirm.org"] [uri "/.git/config"] [unique_id "ao-9zR7rKPN5LmOXN-NOFgAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 17:40:49
(3 weeks ago)
172.69.222.229 - - [25/Aug/2026:14:40:48 -0300] "GET /.git/HEAD HTTP/2.0" 500 170 "-" "Mozilla/5.0 ( ...
show more
172.69.222.229 - - [25/Aug/2026:14:40:48 -0300] "GET /.git/HEAD HTTP/2.0" 500 170 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-25 17:17:50
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:17:46.344556 2026] [security2:error] [pid 2231320:tid 2231427] [client 172.69.222.229:12052] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.khalessilaw.com"] [uri "/.git/config"] [unique_id "ao3OOpzzoYazeI4tLKetYQAAAZQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:37:23
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:37:17.672270 2026] [security2:error] [pid 30283:tid 30283] [client 172.69.222.229:13238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.controlledautomationinc.com"] [uri "/.git/config"] [unique_id "ao1GLUWuh7iCmGphmOr79AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 23:25:37
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.229 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 19:25:33.382619 2026] [security2:error] [pid 30194:tid 30194] [client 172.69.222.229:10025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thomasanthonyquinn.com"] [uri "/.git/config"] [unique_id "aozS7V2gmwwYS4EeC3D6uwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack