๐บ๐ธ
TPI-Abuse
2026-06-02 12:56:09
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:56:03.370274 2026] [security2:error] [pid 22583:tid 22583] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:9354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daveroozendaal.com"] [uri "/.git/config"] [unique_id "ah7S4-7lDfY5giVqHGs9BAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 07:47:42
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 03:47:35.104613 2026] [security2:error] [pid 6237:tid 6237] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:11577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jaragoodrich.com"] [uri "/.git/config"] [unique_id "af7ml0N_P4mbtgJyBK2p6QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-05-03 08:40:49
(1 month ago)
[SunMay0310:40:48.3061882026][security2:error][pid2856722:tid2856838][client2400:cb00:928:1000:f3eb: ...
show more
[SunMay0310:40:48.3061882026][security2:error][pid2856722:tid2856838][client2400:cb00:928:1000:f3eb:fe32:d93:d0c4:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:user-agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"asw-sa.com\"][uri\"/.git/config\"][unique_id\"afcKEIMnca7w9Za8GJTqHQAAAQ0\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 03:40:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 23:40:16.278591 2026] [security2:error] [pid 9861:tid 9861] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:10146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "title49.com.itaxcenter.com"] [uri "/.git/config"] [unique_id "afF9oBxRMzskNiqFLMZcywAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-26 05:30:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 26 01:30:03.198579 2026] [security2:error] [pid 14076:tid 14076] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:9383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "luckypupdesigns.com"] [uri "/.git/config"] [unique_id "ae2i2_GtG6-Jb4cofLk95QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-24 21:21:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 17:21:12.738259 2026] [security2:error] [pid 20751:tid 20769] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:10991] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "expozium.com"] [uri "/.git/config"] [unique_id "aeveyHY07Ty4vBr7lOhsmQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-04-08 19:12:42
(1 month ago)
(apache-empty-ua) Failed empty apache-ua trigger with match [redacted]): (CF_ENABLE)
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-05 00:25:33
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 20:25:29.444182 2026] [security2:error] [pid 14704:tid 14704] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:11299] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.attendantsfromhell.com"] [uri "/.env.development"] [unique_id "adGr-fnPEEhq368CqG4CKwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-04-04 19:26:53
(1 month ago)
Probing websites for vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 19:25:47
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 15:25:41.433303 2026] [security2:error] [pid 6049:tid 6049] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:9391] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "limegreengirl.michaelward.com"] [uri "/.env.save"] [unique_id "adFltWCY7ljo0alomBprvwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 07:11:34
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 03:11:25.873835 2026] [security2:error] [pid 9038:tid 9041] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:12831] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bestfriendbob.richardleeweatherman.com"] [uri "/.git/refs/heads/master"] [unique_id "adC5nQtIcG4c3n3R5Uy5IAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 01:28:59
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 21:28:55.221746 2026] [security2:error] [pid 11300:tid 11300] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:11491] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.reelfruits.com"] [uri "/.env.production.local"] [unique_id "adBpV7jtZhRN8RMrOiAwMwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 11:34:09
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 07:34:03.621231 2026] [security2:error] [pid 13530:tid 13530] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:11533] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.stoutmen.com"] [uri "/.env.production.bak"] [unique_id "ac-lq39SOPfJtBwD8yyhRwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 09:49:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:928:1000:f3eb:fe32:d93:d0c4 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 05:49:14.298701 2026] [security2:error] [pid 21081:tid 21081] [client 2400:cb00:928:1000:f3eb:fe32:d93:d0c4:9236] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.proinser.imerka.com.mx"] [uri "/.env"] [unique_id "ac-NGrPfTrmqtdRYhKSXFgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Hazzard
2026-04-02 11:46:46
(2 months ago)
(apache-empty-ua) Failed empty apache-ua trigger with match [redacted]): (CF_ENABLE)
Hacking