๐บ๐ธ
TPI-Abuse
2026-10-01 03:57:05
(43 minutes ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 23:57:00.853852 2026] [security2:error] [pid 17963:tid 17966] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:13043] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafm.org"] [uri "/.git/config"] [unique_id "ar3aDASmht_hVNukoXJ3rgAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 16:08:13
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 12:08:04.847492 2026] [security2:error] [pid 13211:tid 13211] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:10085] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "altoshp.com"] [uri "/.env.staging"] [unique_id "ar0z5GU7RjeokpGjti8p6AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 12:19:56
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:19:49.866095 2026] [security2:error] [pid 26004:tid 26004] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:10107] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.loneoakhoney.com"] [uri "/.git/HEAD"] [unique_id "arz-ZQekHpWOKw-_RW6wfAAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 06:48:19
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 02:48:14.569452 2026] [security2:error] [pid 3631:tid 3631] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:11284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cortona.ws"] [uri "/wp-config.php"] [unique_id "arywrhMUf29cCLK8gT3hIQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 17:47:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 13:47:21.445964 2026] [security2:error] [pid 22002:tid 22002] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:9621] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "opere.com"] [uri "/.env.local"] [unique_id "arv5qZUYSzHGD538o57ZlAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 20:37:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 16:37:35.336478 2026] [security2:error] [pid 1679:tid 1679] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:13511] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "closedfortheseason.com"] [uri "/wp-config.php"] [unique_id "arrQD_-f_Lnzsax7tBUZNwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 10:56:53
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 06:56:46.062976 2026] [security2:error] [pid 7621:tid 7621] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:9510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michleen-collins.com"] [uri "/wp-config.php.bak"] [unique_id "arpH7rAaLWWPfm7xpyhoYAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-26 10:27:38
(4 days ago)
(mod_security) mod_security (id:210730) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210730) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 06:27:35.024947 2026] [security2:error] [pid 16106:tid 16106] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:9339] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.waterspell.net|F|2"] [data ".env.backup"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.waterspell.net"] [uri "/.env.backup"] [unique_id "areeFzVKjsta3nxkKV834gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-15 21:59:55
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-14.
show less
Web App Attack
SSH
Hacking
Anonymous
2025-08-24 19:52:10
(1 year ago)
wp admin page access attempt
...
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-01-09 19:11:45
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:225170) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jan 09 14:11:41.060426 2025] [security2:error] [pid 1674270:tid 1674270] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:50908] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.pixacast.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.pixacast.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z4AfbdBy6tOd5-eQqYho4gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-11-13 18:26:38
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 13 13:25:20.647922 2024] [security2:error] [pid 14572:tid 14572] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f:57064] [client 2400:cb00:555:1000:1e9f:2e7c:2f3d:da3f] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.redish.org"] [uri "/.env"] [unique_id "ZzTvEORIkweWGJZCwuj_agAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack