🇺🇸
TPI-Abuse
2026-09-21 04:54:31
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 00:54:24.834511 2026] [security2:error] [pid 2610:tid 2610] [client 207.244.119.250:50039] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tt-w.com"] [uri "/.git/HEAD"] [unique_id "arC4gCaiIcKeWrUjwY42AgAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-20 23:05:59
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:05:55.054221 2026] [security2:error] [pid 19083:tid 19083] [client 207.244.119.250:50724] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "timbrazier.com"] [uri "/.git/HEAD"] [unique_id "arBm0xdICAit-H5u0kXYZQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-20 22:00:24
(13 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-19.
show less
Web App Attack
SSH
Hacking
🇺🇸
TPI-Abuse
2026-09-20 07:56:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 03:56:40.030213 2026] [security2:error] [pid 12619:tid 12619] [client 207.244.119.250:49161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.calificacionyvalidacionsicav.com.spyasociados.com"] [uri "/.git/HEAD"] [unique_id "aq-RuC716WjXqc0Ec-zRYQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
backslash
2026-09-20 04:03:03
(1 day ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
🇺🇸
TPI-Abuse
2026-09-19 15:03:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 11:03:46.646430 2026] [security2:error] [pid 29127:tid 29127] [client 207.244.119.250:38329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rentstrippersindio.com"] [uri "/.git/HEAD"] [unique_id "aq6kUoT2HS-V3Ugoo3KUaAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 19:42:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 15:42:16.742062 2026] [security2:error] [pid 6007:tid 6091] [client 207.244.119.250:33705] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.singaporestockexchange.org.aafm.us"] [uri "/.git/HEAD"] [unique_id "aq2UGHIIV_pbelVYcuLHigAAAJM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-18 16:51:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 12:51:11.990691 2026] [security2:error] [pid 18750:tid 18750] [client 207.244.119.250:38023] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "learningbyshipping.com"] [uri "/.git/HEAD"] [unique_id "aq1r_9v-ft5BW-qwX9viiwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 09:35:45
(6 days ago)
(mod_security) mod_security (id:949110) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:949110) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 05:35:34.280588 2026] [security2:error] [pid 22064:tid 22064] [client 207.244.119.250:52388] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "motunaonaobookings.hamiltonbookings.com"] [uri "/.git/HEAD"] [unique_id "aqkRZnOHMLt5fhBndWynjQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-15 02:00:51
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 22:00:41.343378 2026] [security2:error] [pid 28695:tid 28695] [client 207.244.119.250:59590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.alphatar.io"] [uri "/.git/HEAD"] [unique_id "aqimyQ_X4MvF9EUg_5ANzAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-14 14:02:32
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 14 10:02:15.886628 2026] [security2:error] [pid 31070:tid 31070] [client 207.244.119.250:41118] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blog.tulsatvmemories.com"] [uri "/.git/HEAD"] [unique_id "aqf-Z_vv15N_6Bie4d9LzwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
LRob
2026-09-13 15:09:58
(1 week ago)
Enumerating paths that do not exist (scanning) | method: GET | path: /.git/HEAD | ua: Python-urllib/ ...
show more
Enumerating paths that do not exist (scanning) | method: GET | path: /.git/HEAD | ua: Python-urllib/3.10 | 2026-09-13 15:09 UTC
show less
Port Scan
Web App Attack
🇺🇦
URAN Publishing Service
2026-09-13 07:36:29
(1 week ago)
[13/Sep/2026:10:36:28 +0300] -- 207.244.119.250 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-12 18:20:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 207.244.119.250 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 14:20:23.215808 2026] [security2:error] [pid 11643:tid 11643] [client 207.244.119.250:37152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.effectivefirearms.com"] [uri "/.git/HEAD"] [unique_id "aqWX5_3cSzjju0WpTNXMOwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇩
Burayot
2026-09-12 13:53:09
(1 week ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 207.244.119.250 (US/United States/- ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 207.244.119.250 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack