๐บ๐ธ
TPI-Abuse
2026-08-27 02:54:07
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:54:02.908658 2026] [security2:error] [pid 23520:tid 23520] [client 172.69.223.32:11217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.crowmoonmarketing.com"] [uri "/.git/HEAD"] [unique_id "ao-myjcL_HXOZn3BNXS16wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 02:38:24
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:38:16.522517 2026] [security2:error] [pid 10551:tid 10551] [client 172.69.223.32:10630] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marxistphilosophy.org"] [uri "/.git/HEAD"] [unique_id "ao-jGCu6q34uDxNZKceedQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:48:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:48:11.584652 2026] [security2:error] [pid 549529:tid 549548] [client 172.69.223.32:10126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photo.gallery.the-aquifer.com"] [uri "/.git/config"] [unique_id "ao8m26KHc8vyIo5hQ60NuAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 15:37:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 11:36:56.417663 2026] [security2:error] [pid 22489:tid 22489] [client 172.69.223.32:9447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cloudex.link"] [uri "/.git/config"] [unique_id "ao8IGK5T0VRD85KzcT_kDgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 07:01:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:01:10.177998 2026] [security2:error] [pid 23135:tid 23135] [client 172.69.223.32:11520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.steamboatrowena.com"] [uri "/.git/config"] [unique_id "ao6PNqGb2yuiT59y3cS63wAAADs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-08-25 19:32:43
(2 days ago)
Too many 404 requests [BY]
Web App Attack
๐ฏ๐ต
Valhalla
2026-08-25 19:21:15
(2 days ago)
/.git/HEAD
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 11:32:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 07:31:58.602035 2026] [security2:error] [pid 23672:tid 23672] [client 172.69.223.32:13717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ic1.biz"] [uri "/.git/HEAD"] [unique_id "ao19LhfCvmAbNuFbNBpXvgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 16:06:22
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 12:06:13.819450 2026] [security2:error] [pid 26635:tid 26657] [client 172.69.223.32:13352] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.masterscertification.com"] [uri "/.git/HEAD"] [unique_id "aoxr9QVXn7ZOQj5QVRTTgwAAAZQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 14:16:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.32 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 10:16:48.606130 2026] [security2:error] [pid 14012:tid 14012] [client 172.69.223.32:10380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.markgebhard.net"] [uri "/.git/HEAD"] [unique_id "aoxSUAc04SDvpBfT7L99RwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-24 04:31:09
(3 days ago)
Web App Attack
Anonymous
2026-08-15 12:42:34
(1 week ago)
Repeated unauthorized connection attempts to restricted service observed.
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐ง๐พ
lns.bz
2026-08-09 13:46:50
(2 weeks ago)
.env scanning [BY]
Web App Attack
๐ง๐ช
madeit
2026-08-08 23:51:04
(2 weeks ago)
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-07 19:40:44
(2 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-07 20:40:44 UTC
Log evidence:
172.69.223.32 - - [07/Aug/2026:20:40:39 +0100] "GET /secrets/bootstrap%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
08/07/2026-20:40:39.554997 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.69.223.32:13844 -> 185.127.18.66:80
show less
Port Scan
Brute-Force