๐บ๐ธ
TPI-Abuse
2026-08-25 11:33:03
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 07:32:57.303081 2026] [security2:error] [pid 18860:tid 18860] [client 172.69.222.96:13710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.eagrant.com"] [uri "/.git/HEAD"] [unique_id "ao19aczi54hejOzGSGdgNQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-25 09:47:40
(3 hours ago)
[TueAug2511:47:33.6018102026][security2:error][pid2318797:tid2318808][client172.69.222.96:0]ModSecur ...
show more
[TueAug2511:47:33.6018102026][security2:error][pid2318797:tid2318808][client172.69.222.96:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.traslochiamo.ch\"][uri\"/.git/HEAD\"][unique_id\"ao1ktQHp9J9M0TdT3yocgQAAAAA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 19:36:19
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 15:36:14.046992 2026] [security2:error] [pid 11139:tid 11139] [client 172.69.222.96:12491] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.naturopathicsource.com"] [uri "/.git/config"] [unique_id "aoydLgdK9RQxbs-ra1m1fQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 19:15:12
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 15:15:07.688105 2026] [security2:error] [pid 4915:tid 4915] [client 172.69.222.96:13232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.homerbiz.com"] [uri "/.git/HEAD"] [unique_id "aoyYO3G1R6hmhrjGZvCYCAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 18:49:36
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:49:32.823699 2026] [security2:error] [pid 29555:tid 29555] [client 172.69.222.96:10486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.paintingqueen.com"] [uri "/.git/HEAD"] [unique_id "aoySPLkPOGRjt3KdvOHPKAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 03:58:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 23:58:37.533381 2026] [security2:error] [pid 29331:tid 29331] [client 172.69.222.96:12836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lisadodd.com"] [uri "/.git/config"] [unique_id "aovBba3908MwFLJEhTP4iwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-22 16:24:03
(2 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-15 10:22:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.222.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 06:22:31.297830 2026] [security2:error] [pid 18444:tid 18444] [client 172.69.222.96:12049] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harintonmechanical.com"] [uri "/.git/HEAD"] [unique_id "aoA9505O1LMo9pUCqI9trAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-13 13:24:34
(1 week ago)
172.69.222.96 - - [13/Aug/2026:15:24:30 +0200] "GET /operator HTTP/1.1" 403 124 "-" "curl/8.7.1"
172 ...
show more
172.69.222.96 - - [13/Aug/2026:15:24:30 +0200] "GET /operator HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:30 +0200] "GET /supervisor HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:30 +0200] "GET /webmaster HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:30 +0200] "GET /siteadmin HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:31 +0200] "GET /dashboard HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:31 +0200] "GET /dashboard/login HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:31 +0200] "GET /dashboard/admin HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:31 +0200] "GET /dashboard/settings HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:31 +0200] "GET /login HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.69.222.96 - - [13/Aug/2026:15:24:31 +0200] "GET /login.php HTTP/1.1" 403 124 "-" "curl/8.7.1"
172
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Zydzy
2026-07-25 14:59:09
(4 weeks ago)
Automated attack detected. Server: 95.140.154.181. Jail: nginx-exploit.
Web App Attack
Anonymous
2026-07-20 00:05:09
(1 month ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฉ๐ช
Zydzy
2026-07-13 21:05:05
(1 month ago)
Automated attack detected. Server: 95.140.154.181. Jail: nginx-exploit.
Web App Attack
๐ซ๐ท
dynamix
2026-06-08 22:43:10
(2 months ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-05-16 01:25:44
(3 months ago)
Aggressive web scan
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-04-21 12:03:04
(4 months ago)
Persistent port scanning or vulnerability scanning
Port Scan