๐บ๐ธ
TPI-Abuse
2026-08-26 13:01:33
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:01:28.667935 2026] [security2:error] [pid 1543:tid 1543] [client 2400:cb00:119:1000:934:53ce:caa:530:11539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.sheargrafix.com"] [uri "/.git/HEAD"] [unique_id "ao7jqB6fcRqnCk9yzlmBmgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:23:19
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:23:12.611972 2026] [security2:error] [pid 29136:tid 29136] [client 2400:cb00:119:1000:934:53ce:caa:530:9435] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cbcfargo.com"] [uri "/.git/config"] [unique_id "ao6-kGkRemCKmzwDfR8sJwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:41:36
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:41:28.035251 2026] [security2:error] [pid 3038:tid 3038] [client 2400:cb00:119:1000:934:53ce:caa:530:13041] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3905ccn.us.3905ccn.org"] [uri "/.git/HEAD"] [unique_id "ao6muNkkjsyzO_-yd-T3dAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 05:03:56
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 01:03:50.499205 2026] [security2:error] [pid 6805:tid 6805] [client 2400:cb00:119:1000:934:53ce:caa:530:9308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jsdavison.com"] [uri "/.git/config"] [unique_id "ao5zttjpN6DSqo28iqK0RAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:47:34
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:47:28.482121 2026] [security2:error] [pid 29224:tid 29224] [client 2400:cb00:119:1000:934:53ce:caa:530:11697] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.ixd.net"] [uri "/.git/config"] [unique_id "ao5v4Gb50LouT8sigpRZqgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:14:04
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:13:56.835839 2026] [security2:error] [pid 17658:tid 17662] [client 2400:cb00:119:1000:934:53ce:caa:530:12069] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.michaelmercier.com"] [uri "/.git/config"] [unique_id "ao5oBAS95XNSpE49ykWwcQAAAQI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 00:05:12
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 20:05:04.864978 2026] [security2:error] [pid 28923:tid 28923] [client 2400:cb00:119:1000:934:53ce:caa:530:10845] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.web-sitebuilder.com"] [uri "/.git/HEAD"] [unique_id "ao4tsPwCD0OhiiTif8-gOgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-25 21:59:42
(17 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-24.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-25 07:15:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:15:19.389796 2026] [security2:error] [pid 7552:tid 7552] [client 2400:cb00:119:1000:934:53ce:caa:530:11742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jonathanwilsonphotography.jonathanwilson.me"] [uri "/.git/HEAD"] [unique_id "ao1BBw1FWILowzvwQy5IfAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 06:13:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 02:13:24.318715 2026] [security2:error] [pid 23339:tid 23339] [client 2400:cb00:119:1000:934:53ce:caa:530:12501] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.votmuli.com.greenlight.us"] [uri "/.git/HEAD"] [unique_id "ao0yhLK9pqlsSEOx8v7z1gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 03:57:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 23:56:55.388839 2026] [security2:error] [pid 8816:tid 8816] [client 2400:cb00:119:1000:934:53ce:caa:530:11914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.artfranz.com"] [uri "/.git/config"] [unique_id "ao0ShzN083nUOd_epyP2RAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 02:48:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 22:48:30.691226 2026] [security2:error] [pid 32166:tid 32166] [client 2400:cb00:119:1000:934:53ce:caa:530:13861] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.debosden.com"] [uri "/.git/config"] [unique_id "ao0Cfngf4EUJs6xp18ZEwQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 01:43:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 21:43:00.067192 2026] [security2:error] [pid 26820:tid 26820] [client 2400:cb00:119:1000:934:53ce:caa:530:12973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.deepseasugar.com"] [uri "/.git/HEAD"] [unique_id "aozzJJRSoN53UDziGTa6RgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 00:59:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:119:1000:934:53ce:caa:530 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 20:59:10.947710 2026] [security2:error] [pid 1999:tid 1999] [client 2400:cb00:119:1000:934:53ce:caa:530:10161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.denniskirlin.com"] [uri "/.git/HEAD"] [unique_id "aozo3mbHdfWou3NHSLT-9wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-24 21:29:07
(1 day ago)
[MonAug2423:29:01.1888302026][security2:error][pid1592181:tid1592284][client2400:cb00:119:1000:934:5 ...
show more
[MonAug2423:29:01.1888302026][security2:error][pid1592181:tid1592284][client2400:cb00:119:1000:934:53ce:caa:530:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"gualandi.ch\"][uri\"/.git/config\"][unique_id\"aoy3nY8wBcVWnNQIEh8-1gAAANE\"]
show less
Port Scan
Brute-Force
Web App Attack