๐บ๐ธ
TPI-Abuse
2026-08-28 13:37:40
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:37:34.992831 2026] [security2:error] [pid 10565:tid 10565] [client 172.69.222.252:9629] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.forerunnersjazz.org"] [uri "/.git/config"] [unique_id "apGPHm2j2atqppv97cNYNwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 10:48:40
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:48:34.747317 2026] [security2:error] [pid 29791:tid 29881] [client 172.69.222.252:11768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jeflis.com"] [uri "/.git/HEAD"] [unique_id "apFnggPFJQcdiy2Jy8x4xgAAAQg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 03:27:29
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 23:27:25.961672 2026] [security2:error] [pid 28560:tid 28560] [client 172.69.222.252:11923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.exhaustthelimits.org"] [uri "/.git/config"] [unique_id "apEAHSlHY9gDQ9ZWiHuAmQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 23:59:38
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:59:32.422076 2026] [security2:error] [pid 24636:tid 24636] [client 172.69.222.252:13598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keystonebrass.com"] [uri "/.git/config"] [unique_id "apDPZPT4tAOmaN8HP_j60AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 13:06:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:06:08.669561 2026] [security2:error] [pid 5322:tid 5322] [client 172.69.222.252:10106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.samuelcurtis.com"] [uri "/.git/config"] [unique_id "apA2QLiMZeOxMVFcDbQjxQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:49:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:49:27.876549 2026] [security2:error] [pid 3953:tid 3953] [client 172.69.222.252:13170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vabq.com"] [uri "/.git/config"] [unique_id "apAWN1PSVLXX_epJpR_5xgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 23:04:22
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 19:04:16.657180 2026] [security2:error] [pid 24026:tid 24054] [client 172.69.222.252:11022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.magazineofwallstreet.com"] [uri "/.git/HEAD"] [unique_id "ao9w8EXTD11a20kHmjQe_AAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 13:53:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:52:56.488255 2026] [security2:error] [pid 3901:tid 3901] [client 172.69.222.252:10678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.srtmanagementservices.com"] [uri "/.git/HEAD"] [unique_id "ao2eOHwnlob2eDBmsL8euAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 09:47:54
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 05:47:51.224786 2026] [security2:error] [pid 1834:tid 1834] [client 172.69.222.252:9292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myshineart.com.sobhrach.com"] [uri "/.git/config"] [unique_id "ao1kx720tjMlHgOLbIJo0AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 05:04:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 01:04:36.730140 2026] [security2:error] [pid 13385:tid 13385] [client 172.69.222.252:13484] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.windisfun.com"] [uri "/.git/config"] [unique_id "ao0iZEOn_-QdU67VHXF9NAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 01:48:50
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 21:48:42.952149 2026] [security2:error] [pid 26884:tid 26884] [client 172.69.222.252:11808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.paavoharkonen.com"] [uri "/.git/config"] [unique_id "aoz0ekw5S9IgiPuiyBiDqQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:34:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:34:14.629912 2026] [security2:error] [pid 22018:tid 22018] [client 172.69.222.252:11169] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "spadina.passy.us"] [uri "/.git/config"] [unique_id "aoFL1vYSi6TrLVAv57FoEAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-10 23:26:15
(2 weeks ago)
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-07 19:23:24
(3 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-07 20:23:24 UTC
Log evidence:
172.69.222.252 - - [07/Aug/2026:20:23:20 +0100] "GET /config/development%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
08/07/2026-20:23:20.011989 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.69.222.252:11339 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
๐ฆ๐บ
dyln
2026-08-04 08:55:41
(3 weeks ago)
Dyls honeypot brute-force: proto8 (10 total hits)
Brute-Force