๐บ๐ธ
TPI-Abuse
2026-06-02 11:55:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:55:07.098255 2026] [security2:error] [pid 23255:tid 23255] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:10783] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gescosigns.com"] [uri "/.git/config"] [unique_id "ah7Em8VBmsRHu3KQ5GK5dAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 15:58:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 11:57:59.431212 2026] [security2:error] [pid 6629:tid 6629] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:12685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.lukeschicago.com"] [uri "/.git/config"] [unique_id "afN8B5PUJ-9wyNQrGXRK_AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 12:51:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 08:51:03.562157 2026] [security2:error] [pid 2520:tid 2520] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:9228] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.namadiscount.com"] [uri "/.git/config"] [unique_id "afNQN6ClaYhQN7HSZDwn5AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-28 11:26:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 28 07:26:19.912227 2026] [security2:error] [pid 14100:tid 14236] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:10641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yubasutterphotographer.com"] [uri "/.git/config"] [unique_id "afCZWzE6IOfaJqoJLrB7TgAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 04:03:46
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 00:03:42.983586 2026] [security2:error] [pid 13090:tid 13090] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:9880] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwieser.com"] [uri "/.git/config"] [unique_id "aew9HuQkhNZoWRhI-xlllAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 03:27:49
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 24 23:27:45.412889 2026] [security2:error] [pid 24127:tid 24127] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:12093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dividivipartners.com"] [uri "/.git/config"] [unique_id "aew0sUrZmzsf9v2lHnRHiAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-04-10 06:32:41
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-08 08:18:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 04:18:13.795034 2026] [security2:error] [pid 2393878:tid 2393878] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:10002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.daveroozendaal.com"] [uri "/.env.production"] [unique_id "adYPRf6itjpKobSPR-KInQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 05:32:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 01:32:25.646124 2026] [security2:error] [pid 3226078:tid 3226078] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:11155] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "insecticida.aguasolar.com"] [uri "/.git/HEAD"] [unique_id "adXoaRChTMnELEf7KnLylgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 02:48:48
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 22:48:42.846813 2026] [security2:error] [pid 1696393:tid 1696393] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:9920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.kritaka.ai"] [uri "/core/.env"] [unique_id "adXCCk_QRCd_IHa685d9dwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-04-06 21:30:18
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-04-06 10:50:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 06:50:10.484317 2026] [security2:error] [pid 1586:tid 1586] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:9816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.eeinspect.net"] [uri "/.env.development.local"] [unique_id "adOP4oYYaP1KQhzD4lk46QAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 14:02:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:2cad:48ea:8ac:9904 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 10:02:03.738575 2026] [security2:error] [pid 12726:tid 12755] [client 2400:cb00:933:1000:2cad:48ea:8ac:9904:13554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.dukesandgannon.com"] [uri "/.env.production"] [unique_id "adJrW8FkA5-_eoHIQIXDVwAAANc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-04-05 01:25:26
(1 month ago)
(modsecurity) srv102 ModSecurity 2400:cb00:933:1000:2cad:48ea:8ac:9904 (DE/Germany/-): 10 in the las ...
show more
(modsecurity) srv102 ModSecurity 2400:cb00:933:1000:2cad:48ea:8ac:9904 (DE/Germany/-): 10 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-04-03 12:33:00
(2 months ago)
Persistent port scanning or vulnerability scanning
Port Scan