๐บ๐ธ
TPI-Abuse
2026-03-30 08:39:51
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 04:39:46.454183 2026] [security2:error] [pid 8507:tid 8507] [client 172.70.240.167:10406] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.debzy.tolenaar.com"] [uri "/.git/config"] [unique_id "aco20v6l9F8w8f4j3exbAQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-03-30 08:02:19
(5 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-201)
Hacking
๐ซ๐ท
Guardian
2026-03-30 05:26:14
(5 months ago)
Unauthorized attempt to retrieve configuration file
172.70.240.167 [30/Mar/2026:05:26:14] "GET /admi ...
show more
Unauthorized attempt to retrieve configuration file
172.70.240.167 [30/Mar/2026:05:26:14] "GET /admin/.env HTTP/1.1"
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 01:06:17
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 21:06:12.482027 2026] [security2:error] [pid 26257:tid 26257] [client 172.70.240.167:10357] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.prcomputersolutions.com"] [uri "/.git/config"] [unique_id "acnMhLPoSJajnYkNer9GYAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 23:25:30
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 19:25:26.075102 2026] [security2:error] [pid 27110:tid 27110] [client 172.70.240.167:13538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.sayhellotometamodernism.com"] [uri "/.git/index"] [unique_id "acm05jsrLVXfzz-zwMfeXAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 20:02:56
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 16:02:51.249106 2026] [security2:error] [pid 25263:tid 25263] [client 172.70.240.167:12506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.whatyouhear.com"] [uri "/.git/index"] [unique_id "acmFa7AWmeSGdFEJNbCPmQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Celtic
2026-03-29 19:44:10
(5 months ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
๐ณ๐ฑ
e.fierstra
2026-03-29 19:39:29
(5 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-29 19:11:02
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 15:10:51.507291 2026] [security2:error] [pid 23588:tid 23588] [client 172.70.240.167:9740] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.sjjcox.com"] [uri "/.git/config"] [unique_id "acl5O-mqA883eyb1PnZQ_wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-29 14:22:30
(5 months ago)
[Sun Mar 29 16:22:26.260616 2026] [authz_core:error] [pid 4628] [client 172.70.240.167:9572] AH01630 ...
show more
[Sun Mar 29 16:22:26.260616 2026] [authz_core:error] [pid 4628] [client 172.70.240.167:9572] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Mar 29 16:22:29.295540 2026] [authz_core:error] [pid 4628] [client 172.70.240.167:9572] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Mar 29 16:22:29.319950 2026] [authz_core:error] [pid 4628] [client 172.70.240.167:9572] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 18:11:54
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 14:11:46.509077 2026] [security2:error] [pid 21893:tid 21893] [client 172.70.240.167:12721] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beyond.best"] [uri "/.env.local"] [unique_id "acV24mBBCZ0QBLz5tn7_KgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-24 06:26:04
(5 months ago)
[Tue Mar 24 07:25:53.888865 2026] [authz_core:error] [pid 23171] [client 172.70.240.167:11449] AH016 ...
show more
[Tue Mar 24 07:25:53.888865 2026] [authz_core:error] [pid 23171] [client 172.70.240.167:11449] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Tue Mar 24 07:26:02.597534 2026] [authz_core:error] [pid 23174] [client 172.70.240.167:11450] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Tue Mar 24 07:26:02.877889 2026] [authz_core:error] [pid 23174] [client 172.70.240.167:11450] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
mnsf
2026-03-22 01:05:27
(5 months ago)
Too many Status 40X (12)
Scanning/Probing (24)
Brute-Force
Web App Attack
Anonymous
2026-03-21 16:12:12
(5 months ago)
[Sat Mar 21 17:12:10.705102 2026] [authz_core:error] [pid 8674] [client 172.70.240.167:9273] AH01630 ...
show more
[Sat Mar 21 17:12:10.705102 2026] [authz_core:error] [pid 8674] [client 172.70.240.167:9273] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Mar 21 17:12:10.912217 2026] [authz_core:error] [pid 8674] [client 172.70.240.167:9273] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Mar 21 17:12:11.320551 2026] [authz_core:error] [pid 8674] [client 172.70.240.167:9273] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-21 04:33:07
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.240.167 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 00:33:04.242136 2026] [security2:error] [pid 15616:tid 15616] [client 172.70.240.167:13908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.howardherrell.com"] [uri "/.git/logs/HEAD"] [unique_id "ab4fgPjj14Ey_0Xzxj-ZwQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack