๐ฉ๐ช
4server
2026-08-29 18:24:29
(4 days ago)
[SatAug2920:24:26.6171962026][security2:error][pid218397:tid218531][client172.69.223.199:0]ModSecuri ...
show more
[SatAug2920:24:26.6171962026][security2:error][pid218397:tid218531][client172.69.223.199:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.thilyatecnologie.ch\"][uri\"/.git/HEAD\"][unique_id\"apMj2hcNX70RFZOj2s3fCgAAARA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 18:08:36
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 14:08:29.331007 2026] [security2:error] [pid 10462:tid 10462] [client 172.69.223.199:11555] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.boat-registration-hong-kong.com"] [uri "/.git/HEAD"] [unique_id "apMgHbeKWDRNePSF80xJsAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:26:09
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:26:03.507173 2026] [security2:error] [pid 9821:tid 9934] [client 172.69.223.199:12907] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.salvoni.com"] [uri "/.git/config"] [unique_id "apJRS9lOtgmj56t30B6RigAAAkc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:56:47
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:56:39.760868 2026] [security2:error] [pid 20945:tid 20945] [client 172.69.223.199:9808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.isaacsonpaintings.com"] [uri "/.git/HEAD"] [unique_id "apIgN4QYgVXbJYV-fHfVCgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 08:14:11
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 04:14:02.551213 2026] [security2:error] [pid 5324:tid 5324] [client 172.69.223.199:12518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.xtremeautodetailing.com"] [uri "/.git/config"] [unique_id "apFDSrqnFn1o0edpoRFShgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-26 23:57:09
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-26 22:00:33
(1 week ago)
Auto-ban: >3000 req/min op 2026-08-26
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-26 01:27:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 21:27:10.680754 2026] [security2:error] [pid 27873:tid 27873] [client 172.69.223.199:14332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.keymarketmedia.com"] [uri "/.git/HEAD"] [unique_id "ao5A7h_920iCoz7E-6gc5AAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 12:34:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 08:33:57.703689 2026] [security2:error] [pid 30742:tid 30742] [client 172.69.223.199:11952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.arklatexds.com"] [uri "/.git/HEAD"] [unique_id "ao2LtTKIoPk3PBRIZhXbRQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 11:32:39
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 07:32:31.842426 2026] [security2:error] [pid 29847:tid 29847] [client 172.69.223.199:12614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mavikalem.org"] [uri "/.git/HEAD"] [unique_id "aowrzxHbloc07JcZuRo-fQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 08:49:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 04:48:56.151207 2026] [security2:error] [pid 7256:tid 7256] [client 172.69.223.199:10298] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.tonynvn.me"] [uri "/.git/HEAD"] [unique_id "aowFeHDnhjI6sis4rK_G0gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-21 08:47:39
(1 week ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-27 14:20:37
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-07-15 18:46:44
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-15 10:22:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.199 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 06:21:51.744622 2026] [security2:error] [pid 20702:tid 20702] [client 172.69.223.199:13453] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gevieworld.com"] [uri "/.env.local"] [unique_id "aldfP8pPGra_bWKgKDzo-QAAAAU"], referer: https://www.google.com/search?q=gevieworld.com
show less
Brute-Force
Bad Web Bot
Web App Attack