๐บ๐ธ
TPI-Abuse
2026-09-29 10:22:56
(52 minutes ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 06:22:49.679457 2026] [security2:error] [pid 21399:tid 21399] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:9353] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mathewsdental.com"] [uri "/.git/config"] [unique_id "aruReSXdQmSfwrCwuvUrNgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 08:25:17
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 04:25:13.808001 2026] [security2:error] [pid 26406:tid 26406] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:11955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.darrenj.com"] [uri "/.git/config"] [unique_id "art16ci9LWjC5Ja3gRzGQwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 19:22:56
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 15:22:52.108399 2026] [security2:error] [pid 1198:tid 1198] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:10604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.petiteplaisanceconservationfund.org"] [uri "/wp-config.php"] [unique_id "arq-jLcvgsZNTTbglHbSEgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 18:39:17
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 14:39:11.181817 2026] [security2:error] [pid 32263:tid 32263] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:11933] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paintscapeabroad.com"] [uri "/.env.local"] [unique_id "arq0T61OXCIZN3Rc5D-oFAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 17:55:12
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 13:55:01.071283 2026] [security2:error] [pid 15888:tid 15888] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:12558] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whore-cams.com"] [uri "/.git/HEAD"] [unique_id "arqp9VOg3JUKvb6Ku3Bi9wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 12:22:58
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 08:22:53.010784 2026] [security2:error] [pid 2360:tid 2360] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:11800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pilates-slings.eu"] [uri "/wp-config.php"] [unique_id "arpcHSkohJEfSvvuj0HM6gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 11:21:06
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 07:21:01.950190 2026] [security2:error] [pid 29743:tid 29743] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:13647] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.modalguitarist.com"] [uri "/.env.production"] [unique_id "arpNnZamhwmS81OI4vkhwQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 09:26:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 05:26:49.339081 2026] [security2:error] [pid 14463:tid 14463] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:13178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carminestogo.com"] [uri "/.env.local"] [unique_id "aroy2Z5jVpxqehZELdtfywAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 08:30:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 04:30:36.375320 2026] [security2:error] [pid 5559:tid 5559] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:13393] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.butkiewiczfamilyfarm.com"] [uri "/.git/HEAD"] [unique_id "arolrIfZR0JQc3T7WW09wwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 07:57:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 03:57:47.212477 2026] [security2:error] [pid 24847:tid 24847] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:9286] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mitnikarch.com"] [uri "/wp-config.php.bak"] [unique_id "arod-_LadZ1AtSrqSgLVKAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 11:42:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 07:42:09.742254 2026] [security2:error] [pid 11371:tid 11371] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:9437] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pages4you.com"] [uri "/.env.staging"] [unique_id "arevkYrQBxGhZ5gB5p8EhgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 09:42:02
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 05:41:54.635471 2026] [security2:error] [pid 15389:tid 15389] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:12639] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dosfordogs.ca"] [uri "/.git/config"] [unique_id "areTYkut0F__qV4SluLgDQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-14 22:01:40
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-13.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
bunnycalls.com
2025-05-26 14:33:49
(1 year ago)
Web App Honeypot, scanning for exploits related to wordpress. Log line: 2400:cb00:20:1000:6f85:cb5a: ...
show more
Web App Honeypot, scanning for exploits related to wordpress. Log line: 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 - - [26/May/2025:09:33:49 -0500] "GET /wp-admin/setup-config.php HTTP/1.1" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/136.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-02-03 14:42:41
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 03 09:42:34.818442 2025] [security2:error] [pid 669594:tid 669594] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57:52974] [client 2400:cb00:20:1000:6f85:cb5a:fa9d:9d57] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ndanetworks.com"] [uri "/.env"] [unique_id "Z6DV2m0dlic35fKM0ukeoQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack