๐บ๐ธ
TPI-Abuse
2026-08-28 10:29:58
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:29:52.137669 2026] [security2:error] [pid 17424:tid 17424] [client 2400:cb00:119:1000:842d:c602:ef8:3871:12234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.alosi.us"] [uri "/.git/HEAD"] [unique_id "apFjIERNRY5VDf20PUTElAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 16:43:17
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 12:43:11.121112 2026] [security2:error] [pid 26168:tid 26168] [client 2400:cb00:119:1000:842d:c602:ef8:3871:11495] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mylert.org"] [uri "/.git/HEAD"] [unique_id "apBpH44aJl-c2sJsFqa_VAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:07:50
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:07:45.292973 2026] [security2:error] [pid 2209:tid 2209] [client 2400:cb00:119:1000:842d:c602:ef8:3871:9285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hdestimating.com"] [uri "/.git/config"] [unique_id "apAokb9Fy8VjZrrEUBpiQQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:50:44
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:50:38.103273 2026] [security2:error] [pid 11987:tid 11987] [client 2400:cb00:119:1000:842d:c602:ef8:3871:10940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gogitzit.com"] [uri "/.git/config"] [unique_id "ao_6XmnyNN1-Ixybps7mLgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 01:26:41
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:26:37.196340 2026] [security2:error] [pid 28770:tid 28770] [client 2400:cb00:119:1000:842d:c602:ef8:3871:13553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.zabyte.net"] [uri "/.git/HEAD"] [unique_id "ao-STZdcH3PhJnZXg9fEvwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:18:16
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:18:10.447740 2026] [security2:error] [pid 31089:tid 31089] [client 2400:cb00:119:1000:842d:c602:ef8:3871:11053] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.my1611.com"] [uri "/.git/config"] [unique_id "ao6hQgTEpxSinUqsnMnTFgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:50:09
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:50:05.109677 2026] [security2:error] [pid 24948:tid 24948] [client 2400:cb00:119:1000:842d:c602:ef8:3871:12889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mjaaforum.org"] [uri "/.git/HEAD"] [unique_id "ao6MndAPbOiaXBA8ZbfdRgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:11:41
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:11:36.970019 2026] [security2:error] [pid 31173:tid 31173] [client 2400:cb00:119:1000:842d:c602:ef8:3871:9458] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajvaage.com"] [uri "/.git/HEAD"] [unique_id "ao6DmJjwkL8d4ohyAOI6BgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 03:54:47
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 23:54:42.444413 2026] [security2:error] [pid 8971:tid 8971] [client 2400:cb00:119:1000:842d:c602:ef8:3871:14000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gmroyalties.com"] [uri "/.git/HEAD"] [unique_id "ao5jgknLrP6oIXjyi9xrugAAADY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-26 03:13:22
(4 weeks ago)
[WedAug2605:13:17.7835082026][security2:error][pid3352645:tid3352711][client2400:cb00:119:1000:842d: ...
show more
[WedAug2605:13:17.7835082026][security2:error][pid3352645:tid3352711][client2400:cb00:119:1000:842d:c602:ef8:3871:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.bianchitecno.ch\"][uri\"/.git/HEAD\"][unique_id\"ao5ZzZQDSbt_XsoK21aQVQAAAIU\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 01:45:47
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 21:45:43.052692 2026] [security2:error] [pid 30685:tid 30685] [client 2400:cb00:119:1000:842d:c602:ef8:3871:14050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.randlephoto.com"] [uri "/.git/config"] [unique_id "ao5FR4-pYUPg5cEspI_bSQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 00:51:13
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 20:51:07.786335 2026] [security2:error] [pid 22998:tid 22998] [client 2400:cb00:119:1000:842d:c602:ef8:3871:10861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.white-westinghouse.pamplonaserviciotecnico.com"] [uri "/.git/config"] [unique_id "ao44e8I7v5VI83OTuQhkCwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:40:12
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:40:04.493016 2026] [security2:error] [pid 3387:tid 3387] [client 2400:cb00:119:1000:842d:c602:ef8:3871:10537] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.boat-registration-france.com"] [uri "/.git/HEAD"] [unique_id "ao4ZxH5e8zMmQpgMV-B7kAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:09:49
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:842d:c602:ef8:3871 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:09:46.380722 2026] [security2:error] [pid 19294:tid 19294] [client 2400:cb00:119:1000:842d:c602:ef8:3871:12377] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.globalvillagecambodia.org"] [uri "/.git/config"] [unique_id "ao4Sqsw_iEONOiBhIxs3QQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-25 21:59:32
(4 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-24.
show less
Web App Attack
SSH
Hacking