๐บ๐ธ
TPI-Abuse
2026-10-08 01:51:27
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 21:51:19.989652 2026] [security2:error] [pid 8052:tid 8052] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:11447] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "magazinesubscriptionsusa.com"] [uri "/.env.save"] [unique_id "asb3F9LDVX21ork03nEecgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 01:07:08
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 21:06:59.637259 2026] [security2:error] [pid 13933:tid 13933] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:13404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocketcityhotwheelers.com"] [uri "/.git/config"] [unique_id "asbss9WgseH1B5aBrAhcngAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 18:40:06
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 14:40:00.517205 2026] [security2:error] [pid 2364:tid 2364] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:12566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ncogtrains.com"] [uri "/.env.bak"] [unique_id "asaSAG3fbHe94lk0xt3MigAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 06:04:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 02:04:39.733618 2026] [security2:error] [pid 8218:tid 8218] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:12591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ralphharris.org"] [uri "/.htaccess"] [unique_id "asXg95_FFfrRW0_LCLehOQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 04:19:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 00:19:38.626849 2026] [security2:error] [pid 22605:tid 22605] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:10479] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mountainjaytherapy.com"] [uri "/.env.staging"] [unique_id "asXIWtSsonhKyG2JROQuwQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-07 02:22:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 22:22:31.349684 2026] [security2:error] [pid 3213504:tid 3213527] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:10550] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aussiepens.com"] [uri "/.env.production"] [unique_id "asWs580EDMNLsgnt6dPZJAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 15:41:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 11:41:23.228473 2026] [security2:error] [pid 26514:tid 26514] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:11793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whengarbotalks.com"] [uri "/.git/HEAD"] [unique_id "ar5_IwmdiKKnX07P_N_UkwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 12:01:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 08:01:20.797422 2026] [security2:error] [pid 17848:tid 17848] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:13980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htaccess" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sifnosgreekcatering.com"] [uri "/.htaccess"] [unique_id "arz6ENcHFLoKhnP0KopI7QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-20 06:30:02
(1 month ago)
| SQL injection attempt.
Web App Attack
Hacking
SQL Injection
๐ณ๐ฑ
homeshowdomain.nl
2026-05-16 22:05:53
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-15.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2025-02-15 10:30:07
(1 year ago)
(mod_security) mod_security (id:240335) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown ...
show more
(mod_security) mod_security (id:240335) triggered by 2400:cb00:555:1000:ac7b:63b2:7ffb:896d (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 15 05:29:59.824190 2025] [security2:error] [pid 2644921:tid 2644921] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d:24640] [client 2400:cb00:555:1000:ac7b:63b2:7ffb:896d] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 196.251.69.109 (+1 hits since last alert)|rodrigoaldecoa.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "rodrigoaldecoa.com"] [uri "/xmlrpc.php"] [unique_id "Z7Bspw3whquUHhE_6vKUvwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack