๐ฉ๐ช
F242
2026-01-30 06:09:04
(4 months ago)
Wordpress Login or XMLRPC abuse
Web App Attack
๐ฉ๐ช
iNetWorker
2026-01-11 08:28:57
(5 months ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-30 10:20:30
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Dec 30 05:20:23.228073 2025] [security2:error] [pid 3840815:tid 3840836] [client 209.50.173.203:9881] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rawsynergy.com"] [uri "/.git/HEAD"] [unique_id "aVOnZ_hY0WluO26hDFjvSAAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:40:23
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:40:19.081811 2025] [security2:error] [pid 9762:tid 9762] [client 209.50.173.203:10425] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "directoryofdogs.com"] [uri "/.git/HEAD"] [unique_id "aVIiU2uvftjewSSXhfPI2wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
2000cn.com.au
2025-12-29 06:36:32
(5 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:14:58
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:14:52.129725 2025] [security2:error] [pid 8180:tid 8180] [client 209.50.173.203:50275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "quincysheetmetal.com"] [uri "/.svn/wc.db"] [unique_id "aVIcXMz-5HT_FI_67TUu-wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
OceanTreasure
2025-12-29 03:35:20
(5 months ago)
tcp/80; Git HEAD reference exposure attempt: "GET /.git/HEAD" @ 2025-12-29T03:30:36Z [proxy]
Web App Attack
Anonymous
2025-12-08 08:47:27
(6 months ago)
botnet
DDoS Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:42:41
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:42:03.187022 2025] [security2:error] [pid 9321:tid 9321] [client 209.50.173.203:11265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.leonardodecaprio.com"] [uri "/.svn/wc.db"] [unique_id "aSUli_t_MZwISDqRxuGkkgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:18:37
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:18:30.084179 2025] [security2:error] [pid 15439:tid 15439] [client 209.50.173.203:54995] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.anbruswebdesign.com"] [uri "/.env"] [unique_id "aSUgBptzE5f1dejzd_yC-wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:09:41
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:09:35.853270 2025] [security2:error] [pid 22845:tid 22845] [client 209.50.173.203:16445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rosemeadefarms.com"] [uri "/.svn/wc.db"] [unique_id "aSUP3zP_DK5NkJ-MaSPg0gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:36:32
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:36:24.167830 2025] [security2:error] [pid 7326:tid 7515] [client 209.50.173.203:55299] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.gryphix.com"] [uri "/.env"] [unique_id "aSUIGNNUaJ5dFUuoaTx10QAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:56:22
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:56:12.967227 2025] [security2:error] [pid 20317:tid 20317] [client 209.50.173.203:10025] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bonnesfrequences.com"] [uri "/.svn/wc.db"] [unique_id "aST-rEFlkx16ek_TfESFIwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 07:37:08
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 02:36:52.070889 2025] [security2:error] [pid 23986:tid 23986] [client 209.50.173.203:12139] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.lexingtonlimobus.com"] [uri "/.git/HEAD"] [unique_id "aSQLFCW4jV7beus-YzqMDgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:50:28
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.173.203 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:50:20.424347 2025] [security2:error] [pid 12591:tid 12591] [client 209.50.173.203:41207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.natural-history-conservation.com"] [uri "/.env"] [unique_id "aSPyHOT2ISFZeliM2AUA_QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack