πΊπΈ
TPI-Abuse
2026-05-08 11:28:37
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 07:28:31.278768 2026] [security2:error] [pid 21488:tid 21488] [client 172.70.251.49:12776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.godcanuseyou.com"] [uri "/.git/config"] [unique_id "af3I3yr7ZReb4CWMuKobuAAAACs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
pm33
2026-04-07 07:05:07
(5 months ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 21:59:28
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 17:59:18.877376 2026] [security2:error] [pid 690952:tid 690952] [client 172.70.251.49:12460] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.les-volets-bleus.com"] [uri "/.git/refs/heads/master"] [unique_id "adQsttUyRm-trB28W-i1DQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Axel
2026-04-06 01:44:02
(5 months ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env.old Ser ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env.old Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
πΊπΈ
TPI-Abuse
2026-04-04 16:52:16
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 12:52:08.811719 2026] [security2:error] [pid 26509:tid 26509] [client 172.70.251.49:11501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.thefullbladderclub.com"] [uri "/.git/config"] [unique_id "adFBuCsXjLPNZa1AkrR7fwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
TheCoon
2026-04-04 12:45:02
(5 months ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
πΊπΈ
TPI-Abuse
2026-04-03 22:10:44
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 18:10:36.434014 2026] [security2:error] [pid 1525:tid 1525] [client 172.70.251.49:13360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.gilbertortegajewelry.com"] [uri "/.git/HEAD"] [unique_id "adA63EU4quFDrgQbYzxnkwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
dynamix
2026-04-03 13:59:17
(5 months ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 03:33:41
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 23:33:33.933544 2026] [security2:error] [pid 13094:tid 13151] [client 172.70.251.49:11006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.stoborough.com"] [uri "/.git/HEAD"] [unique_id "ac81DXzMxGX9TETZf_tFvAAAAdc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-01 23:05:36
(5 months ago)
Scanning/Probing (33)
Brute-Force
Web App Attack
π«π·
masterguru
2026-04-01 18:22:24
(5 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-193)
Hacking
πΊπΈ
TPI-Abuse
2026-04-01 03:01:59
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 23:01:52.177669 2026] [security2:error] [pid 17024:tid 17024] [client 172.70.251.49:11390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.techimprints.com"] [uri "/.env.test"] [unique_id "acyKoIjSAe7zuJ9EbRzM-gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-31 14:40:09
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 10:40:00.491300 2026] [security2:error] [pid 5043:tid 5043] [client 172.70.251.49:9395] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.archmediaptyltd.com"] [uri "/.git/refs/heads/master"] [unique_id "acvcwBXVELGHNSMQfPSmugAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-31 08:06:27
(5 months ago)
Scanning/Probing (30)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-31 02:29:53
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 22:29:45.482589 2026] [security2:error] [pid 20299:tid 20299] [client 172.70.251.49:11170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajvaage.com"] [uri "/.git/HEAD"] [unique_id "acsxmbdNt0yXl-NMB21u9QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack