๐ฑ๐ป
garmtech.com
2026-03-23 20:15:10
(2 months ago)
IM360 WAF: WordPress plugin/theme auto install block
Web App Attack
๐ฌ๐ง
consul.to
2026-02-18 09:25:57
(3 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
akasolutions.de
2025-12-24 11:19:20
(5 months ago)
(mod_security) mod_security triggered on hostname [redacted] 209.50.188.79 (CA/Canada/-)
SQL Injection
๐บ๐ธ
TPI-Abuse
2025-11-26 22:38:37
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 17:38:31.671717 2025] [security2:error] [pid 3753:tid 3753] [client 209.50.188.79:42255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.raintechgutters.com"] [uri "/.svn/wc.db"] [unique_id "aSeBZwLQ5eOBJVEHDf5ssQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Holger
2025-11-26 19:34:45
(6 months ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
๐ฑ๐ป
garmtech.com
2025-11-25 07:05:14
(6 months ago)
Attempted access to sensitive endpoint (/.git/HEAD) detected. Automated scan or unauthorized probing ...
show more
Attempted access to sensitive endpoint (/.git/HEAD) detected. Automated scan or unauthorized probing.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:50:52
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:50:45.295032 2025] [security2:error] [pid 32100:tid 32100] [client 209.50.188.79:43327] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rannals.com"] [uri "/.svn/wc.db"] [unique_id "aSVDtXwVkThI5ikJQwL8lwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:29:49
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:29:42.823654 2025] [security2:error] [pid 11448:tid 11448] [client 209.50.188.79:40637] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oshawinfree.robtown.com"] [uri "/.env"] [unique_id "aSU-xtqNcLqoQabH6dURrQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:19:17
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:19:05.942056 2025] [security2:error] [pid 466:tid 466] [client 209.50.188.79:18173] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.garysgates.com"] [uri "/.git/HEAD"] [unique_id "aSUuOZ3cebgbL4P25BGbmwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:46:47
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:46:40.763622 2025] [security2:error] [pid 4645:tid 4645] [client 209.50.188.79:48567] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.thomaschemicals.com"] [uri "/.env"] [unique_id "aSUmoOfTyCuAy68_rK4f-wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:17:21
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:17:15.042402 2025] [security2:error] [pid 29529:tid 29529] [client 209.50.188.79:51797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.osmanhc.com"] [uri "/.svn/wc.db"] [unique_id "aSURqxWxxYIFI1uqhsAWhgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:23:47
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:23:43.196463 2025] [security2:error] [pid 27009:tid 27009] [client 209.50.188.79:19365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.renjunews.com"] [uri "/.git/HEAD"] [unique_id "aSUFH5TgmbJ1Cvh3bbSQuAAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:48:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:46:28.176502 2025] [security2:error] [pid 31518:tid 31518] [client 209.50.188.79:12729] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.disabilitydespair.com"] [uri "/.env"] [unique_id "aST8ZDG9V6CzD_F-eW-7lAAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:32:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:32:25.490544 2025] [security2:error] [pid 7326:tid 7530] [client 209.50.188.79:16305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.coheteverde.com"] [uri "/.env"] [unique_id "aST5GdNUaJ5dFUuoaTxivQAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 05:57:39
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.188.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 00:57:32.952970 2025] [security2:error] [pid 13302:tid 13302] [client 209.50.188.79:40555] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.willowcreekretreathouse.com"] [uri "/.env"] [unique_id "aSPzzHfqZEbmPUL02VAiCAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack