๐บ๐ธ
TPI-Abuse
2026-05-11 02:39:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 22:38:55.569128 2026] [security2:error] [pid 23060:tid 23060] [client 172.70.251.128:11816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ruralroutes.ca"] [uri "/.env.development"] [unique_id "agFBPw1zVZjBEje3pR3LMwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-10 19:01:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 15:01:17.738112 2026] [security2:error] [pid 6352:tid 6352] [client 172.70.251.128:11767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sheargrafix.com"] [uri "/.env.php"] [unique_id "agDV_WNQcTQbIq0kVZtDrAAAAAQ"], referer: https://www.google.com/search?q=sheargrafix.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
omartin
2026-05-10 17:27:19
(1 month ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
omartin
2026-05-06 00:58:28
(1 month ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ท
omartin
2026-04-29 11:17:56
(1 month ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 03:50:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 23:50:06.073925 2026] [security2:error] [pid 11442:tid 11442] [client 172.70.251.128:9669] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "getpic.com"] [uri "/.git/config"] [unique_id "aew57lthEIBI_RRNy_LCTwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 09:04:25
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 05:04:18.008719 2026] [security2:error] [pid 1460046:tid 1460046] [client 172.70.251.128:13328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.intrinsicartstudios.crossfiregold.com"] [uri "/.git/refs/heads/main"] [unique_id "adTIktreOG5oV5fViYejDwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-04-07 07:00:00
(2 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-mnz6-1)
Hacking
Web App Attack
Anonymous
2026-04-07 05:11:06
(2 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2026-04-06 15:04:22
(2 months ago)
[Mon Apr 06 17:04:18.995466 2026] [authz_core:error] [pid 21376] [client 172.70.251.128:13270] AH016 ...
show more
[Mon Apr 06 17:04:18.995466 2026] [authz_core:error] [pid 21376] [client 172.70.251.128:13270] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Apr 06 17:04:20.142877 2026] [authz_core:error] [pid 21376] [client 172.70.251.128:13270] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Apr 06 17:04:21.543438 2026] [authz_core:error] [pid 21376] [client 172.70.251.128:13270] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 05:06:48
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 01:06:41.620869 2026] [security2:error] [pid 21931:tid 21931] [client 172.70.251.128:13065] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.deepseasugar.com"] [uri "/.git/index"] [unique_id "adM_YbYe8P-VSM2dFAAK7gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-04 20:05:35
(2 months ago)
Scanning/Probing (19)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 09:35:06
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 05:34:54.636939 2026] [security2:error] [pid 11787:tid 11803] [client 172.70.251.128:12802] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.singaporestockexchange.org.aafm.us"] [uri "/.git/logs/HEAD"] [unique_id "adDbPgo5sGe1WkJ40vuRnQAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-04 02:39:37
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-201)
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-03 19:31:38
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 15:31:32.058880 2026] [security2:error] [pid 12167:tid 12167] [client 172.70.251.128:14247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.donzie.com"] [uri "/.git/logs/HEAD"] [unique_id "adAVlKqufP4xZgTx58CXggAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack