πΊπΈ
TPI-Abuse
2026-10-04 04:40:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 00:39:59.592149 2026] [security2:error] [pid 31971:tid 31971] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:9877] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psychiatryabuse.com"] [uri "/.env"] [unique_id "asHYn1kUo__WBbmhNIBh1gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 04:15:51
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 00:15:44.049176 2026] [security2:error] [pid 26189:tid 26189] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:13006] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "the-practical-pionus.com"] [uri "/wp-config.php"] [unique_id "ar3ecEjQSvqZ7dXXO_f9lQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 01:58:21
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:58:15.733234 2026] [security2:error] [pid 30634:tid 30694] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:9951] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sandbarsteve.com"] [uri "/wp-config.php.bak"] [unique_id "ar2-N9Awr-QxBCFxKbhYCAAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 12:00:33
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:00:27.099167 2026] [security2:error] [pid 3819:tid 3819] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:14272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boblog111.com"] [uri "/.git/HEAD"] [unique_id "arz52-usYHj82x3hySesggAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 08:29:37
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 04:29:32.980424 2026] [security2:error] [pid 3722:tid 3722] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:10772] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abeltours.com"] [uri "/.git/config"] [unique_id "arzIbK-VHzz80F0DxiwS8gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 01:44:33
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 21:44:27.315889 2026] [security2:error] [pid 32410:tid 32410] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:9706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.happyvalleynh.org"] [uri "/wp-config.php"] [unique_id "arxpexyrRBgFrRlcdJopTgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-09-29 21:59:52
(5 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-28.
show less
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-09-28 19:59:51
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 15:59:47.123796 2026] [security2:error] [pid 6568:tid 6568] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:11814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "james.ahlstrom.name"] [uri "/.git/HEAD"] [unique_id "arrHM_CeSK6fzQMW0dR-VwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-26 11:33:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:3f65:467f:7f9f:f83e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 07:33:08.584305 2026] [security2:error] [pid 20089:tid 20089] [client 2400:cb00:555:1000:3f65:467f:7f9f:f83e:10907] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "westernmassaa.net"] [uri "/.git/HEAD"] [unique_id "aretdIYMAXz3Dewu4NGujAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π―π΅
S.O.B.A. Dev.
2026-08-13 01:42:23
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan