๐บ๐ธ
TPI-Abuse
2026-08-29 14:48:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 10:48:48.803409 2026] [security2:error] [pid 20480:tid 20480] [client 172.69.223.184:9617] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajwood.net"] [uri "/.git/config"] [unique_id "apLxUBBObVHNUjRpOfdneQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 04:17:02
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:16:58.499922 2026] [security2:error] [pid 9317:tid 9317] [client 172.69.223.184:10328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-italy.com"] [uri "/.git/HEAD"] [unique_id "apJdOsu817oGRBvjS9acbAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 21:18:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 17:18:04.163040 2026] [security2:error] [pid 3959:tid 3959] [client 172.69.223.184:9519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.albuquerquelimobus.com"] [uri "/.git/HEAD"] [unique_id "apH7DDpQo4toc4z9ORbQggAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-28 21:04:04
(1 day ago)
Web App Attack
๐ต๐ฑ
UMP-PL
2026-08-28 13:28:21
(2 days ago)
Webserver scan (backups, phpadmin, etc.)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:48:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:48:44.361882 2026] [security2:error] [pid 23220:tid 23228] [client 172.69.223.184:12103] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.selfhelpbook.org"] [uri "/.git/config"] [unique_id "apEvTEIpfJvm-u0LaZUAGwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:46:54
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:46:46.060064 2026] [security2:error] [pid 1417:tid 1417] [client 172.69.223.184:11539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sequences.alexthepunk.com"] [uri "/.git/config"] [unique_id "apAVlsxkpYepGcE2ztytSgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 03:58:05
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:57:58.008019 2026] [security2:error] [pid 25998:tid 25998] [client 172.69.223.184:12737] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "customprintedinvitations.com"] [uri "/.git/HEAD"] [unique_id "ao-1xl4sbVgRMu8SiJVm6wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 12:59:29
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 08:59:25.117095 2026] [security2:error] [pid 10308:tid 10308] [client 172.69.223.184:13430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.natursac.com"] [uri "/.git/config"] [unique_id "ao7jLYopSS8T66jnUI9RQAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 09:51:03
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 05:50:57.622927 2026] [security2:error] [pid 28223:tid 28223] [client 172.69.223.184:9572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.ouzcorp.com"] [uri "/.git/HEAD"] [unique_id "ao63ASxi56SMHy5uk-5kfgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 07:00:21
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:00:14.616978 2026] [security2:error] [pid 3721629:tid 3722095] [client 172.69.223.184:14316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "actiontattooauburn.meanmouse.com"] [uri "/.git/HEAD"] [unique_id "ao6O_rycJv2bkUkw0AQ89gAAAdg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:02:20
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:02:16.627350 2026] [security2:error] [pid 6737:tid 6737] [client 172.69.223.184:12055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.linuxforpoets.cygnetsilks.com"] [uri "/.git/config"] [unique_id "ao1MCE0ql7akfNszhM7mSQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 00:12:27
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 20:12:22.438029 2026] [security2:error] [pid 30293:tid 30316] [client 172.69.223.184:10829] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stephaniemoody.com"] [uri "/.git/HEAD"] [unique_id "aozd5kLBMiVyeMGprKaCmQAAAZM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 11:19:05
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.184 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 07:18:59.118619 2026] [security2:error] [pid 24299:tid 24299] [client 172.69.223.184:9415] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ixd.net"] [uri "/.git/HEAD"] [unique_id "aowoo8ZoUqQMNgAICAf2rwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-07 19:37:05
(3 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-07 20:37:05 UTC
Log evidence:
172.69.223.184 - - [07/Aug/2026:20:37:03 +0100] "GET /backend/settings%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
08/07/2026-20:37:03.730945 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.69.223.184:12181 -> 185.127.18.66:80
show less
Port Scan
Brute-Force