๐ฉ๐ช
4server
2026-06-04 11:24:58
(5 hours ago)
[ThuJun0413:24:56.2180042026][security2:error][pid3284298:tid3284321][client172.70.247.42:0]ModSecur ...
show more
[ThuJun0413:24:56.2180042026][security2:error][pid3284298:tid3284321][client172.70.247.42:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"grigorov.ch\"][uri\"/.git/config\"][unique_id\"aiFgiC6HEekhZA6FRExb2AAAAAE\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 22:47:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 18:47:49.330428 2026] [security2:error] [pid 6654:tid 6762] [client 172.70.247.42:14239] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "straight8inc.com"] [uri "/.git/config"] [unique_id "ah9dlYGvUrZTSGFqMESWjgAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 18:46:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 14:46:15.281513 2026] [security2:error] [pid 19998:tid 19998] [client 172.70.247.42:10489] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bilimkurgumanyagi.com"] [uri "/.git/config"] [unique_id "ah8k94RHrMKI5xC9QKepQwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 15:22:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:22:04.690599 2026] [security2:error] [pid 1455:tid 1455] [client 172.70.247.42:11127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "namisushionline.com"] [uri "/.git/config"] [unique_id "ah71HOAZlNAyulJeoU2QGAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-29 08:10:40
(6 days ago)
Trying to access config files
Web App Attack
๐บ๐ธ
WellSpring
2026-05-24 22:58:17
(1 week ago)
wordpress scan on wellspr.ing/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐ฉ๐ช
F242
2026-04-07 00:54:06
(1 month ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ง๐พ
lns.bz
2026-04-04 06:44:01
(2 months ago)
Too many 404 requests [BY]
Web App Attack
๐ซ๐ท
masterguru
2026-03-31 05:46:20
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:Cf-Worker. (5025-193)
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-30 09:20:58
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 05:20:47.982540 2026] [security2:error] [pid 32030:tid 32030] [client 172.70.247.42:13833] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.fastquizmaker.com"] [uri "/.env.staging"] [unique_id "acpAb-UdELub49na2i7v0AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-30 01:48:44
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 21:48:39.329190 2026] [security2:error] [pid 29134:tid 29342] [client 172.70.247.42:10545] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.despachosyoficinas.com"] [uri "/.env"] [unique_id "acnWd_WPprwHn5q8n77x-QAAAJQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 23:36:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 19:36:19.166412 2026] [security2:error] [pid 12344:tid 12344] [client 172.70.247.42:10213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.buildyourownpublishing.com"] [uri "/.git/HEAD"] [unique_id "acRxc899c_BkPJ5dtjeHHwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-03-20 23:00:26
(2 months ago)
Auto-ban: >3000 req/min op 2026-03-20
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-20 04:25:12
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.247.42 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 20 00:25:06.237514 2026] [security2:error] [pid 15034:tid 15034] [client 172.70.247.42:9883] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sendmetennessee.com.itibitico.com"] [uri "/.env.tmp"] [unique_id "abzMIr5JgrMZjI4pwH3HdAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-03-20 03:50:06
(2 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack