๐บ๐ธ
TPI-Abuse
2026-08-19 03:36:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:36:14.315029 2026] [security2:error] [pid 24128:tid 24128] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:9339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.delucchi.net"] [uri "/.git/HEAD"] [unique_id "aoUkrhBq3m9_mENq8SRtmAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 03:13:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:13:36.493884 2026] [security2:error] [pid 32354:tid 32354] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:11221] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.eckerberg.net"] [uri "/.git/HEAD"] [unique_id "aoUfYF1kiftEsJS_4kYwKgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 02:45:56
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:45:49.931975 2026] [security2:error] [pid 6000:tid 6000] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:13755] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.johnpratt.net"] [uri "/.git/HEAD"] [unique_id "aoUY3cciPjbimTaNwtShBQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 21:28:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 17:28:50.154653 2026] [security2:error] [pid 28468:tid 28468] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:13933] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.vcmail.net"] [uri "/.git/HEAD"] [unique_id "aoN9EtHNRSPtABiW5fj6vgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:00:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:00:49.516942 2026] [security2:error] [pid 9001:tid 9001] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:9318] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.christianconsulting.net"] [uri "/.git/HEAD"] [unique_id "aoJ5YXWATFQeaUrKoUkbAAAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:30:32
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:30:25.899790 2026] [security2:error] [pid 29517:tid 29517] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:13151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.cicone.net"] [uri "/.git/HEAD"] [unique_id "aoJkMabkVkt3bCRH9IQGawAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:28:20
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:28:09.830440 2026] [security2:error] [pid 32433:tid 32433] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:10205] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.swhinc.net"] [uri "/.git/HEAD"] [unique_id "aoJVme2KJCh3tMKbLPihXAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 09:30:32
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 05:30:26.234982 2026] [security2:error] [pid 24609:tid 24609] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:12838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.majesticsolutions.co"] [uri "/.git/config"] [unique_id "aoGDMk0_HgWDNWHYWhDPRgAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-07-07 06:19:43
(1 month ago)
malicious bot detected: violations="hit-honeypot"; user_agent="[redacted]"
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 22:24:28
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:1031:1000:436:418c:4aa0:28ff (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 18:24:20.712988 2026] [security2:error] [pid 7806:tid 7806] [client 2400:cb00:1031:1000:436:418c:4aa0:28ff:11295] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mentalmolecule.theknowledgemaster.com"] [uri "/.git/config"] [unique_id "aidBFKHuLbIDVdBymI3pgwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-14 22:04:20
(3 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-13.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
Admins@FBN
2026-04-08 04:03:24
(4 months ago)
FW-PortScan: Traffic Blocked srcport=35337 dstport=80
Port Scan
๐บ๐ธ
vestibtech
2025-10-16 10:54:41
(10 months ago)
2400:cb00:1031:1000:436:418c:4aa0:28ff - - [16/Oct/2025:04:54:40 -0600] "GET /wordpress/wp-admin/set ...
show more
2400:cb00:1031:1000:436:418c:4aa0:28ff - - [16/Oct/2025:04:54:40 -0600] "GET /wordpress/wp-admin/setup-config.php HTTP/2.0" 301 457 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
vestibtech
2025-10-08 14:36:03
(10 months ago)
2400:cb00:1031:1000:436:418c:4aa0:28ff - - [08/Oct/2025:08:36:03 -0600] "GET /wordpress/wp-admin/set ...
show more
2400:cb00:1031:1000:436:418c:4aa0:28ff - - [08/Oct/2025:08:36:03 -0600] "GET /wordpress/wp-admin/setup-config.php HTTP/2.0" 301 457 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
vestibtech
2025-10-01 07:20:02
(10 months ago)
2400:cb00:1031:1000:436:418c:4aa0:28ff - - [01/Oct/2025:01:20:01 -0600] "GET /wordpress/wp-admin/set ...
show more
2400:cb00:1031:1000:436:418c:4aa0:28ff - - [01/Oct/2025:01:20:01 -0600] "GET /wordpress/wp-admin/setup-config.php HTTP/1.1" 301 571 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/140.0.0.0 Safari/537.36"
...
show less
Web App Attack