๐บ๐ธ
TPI-Abuse
2026-06-04 20:33:49
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 16:33:41.964523 2026] [security2:error] [pid 15516:tid 15531] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:12197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wizart.org"] [uri "/.git/config"] [unique_id "aiHhJeP8R8x3lBq6-bWSWgAAAEw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 11:26:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:26:39.683027 2026] [security2:error] [pid 32273:tid 32273] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:11510] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lucid-events.com"] [uri "/.git/config"] [unique_id "ah6975o9JHd9AY8oCz9heQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 11:00:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:00:08.898409 2026] [security2:error] [pid 16109:tid 16109] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:14096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deploy6tharmy.com"] [uri "/.git/config"] [unique_id "ah63uND0p6jsEKs44CFEGwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-03 12:52:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 08:52:02.347350 2026] [security2:error] [pid 1740:tid 1760] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:10449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aclarityforensics.com"] [uri "/.git/config"] [unique_id "afdE8uYDp5f-T_P75vdLFwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-03 08:12:36
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 03 04:12:29.224612 2026] [security2:error] [pid 30291:tid 30291] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:9492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barryschiller.com"] [uri "/.git/config"] [unique_id "afcDbYUyBkKDXyYV0QCkngAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 09:40:46
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 05:40:42.280864 2026] [security2:error] [pid 9833:tid 9833] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:12561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.toytractorrepair.com"] [uri "/.git/config"] [unique_id "afMjmqLR9F7Ui_bg-3xSLQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 09:11:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 05:11:12.804505 2026] [security2:error] [pid 23541:tid 23614] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:11314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.gorealtors.com"] [uri "/.git/config"] [unique_id "afMcsOFDdb33Gmab9rPCNgAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-04-08 17:43:06
(1 month ago)
2400:cb00:933:1000:b36f:eba0:25c6:c209 - - [08/Apr/2026:19:43:05 +0200] "GET /.env.production HTTP/2 ...
show more
2400:cb00:933:1000:b36f:eba0:25c6:c209 - - [08/Apr/2026:19:43:05 +0200] "GET /.env.production HTTP/2.0" 404 275 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/116.0.0.0 Safari/537.36 Edg/116.0.1938.81"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-08 04:41:52
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210730) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 08 00:41:48.822679 2026] [security2:error] [pid 1634476:tid 1634476] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:11125] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.mwrn.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.mwrn.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "adXcjMRbafZUFwgwg3prQQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 12:57:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 08:56:58.645510 2026] [security2:error] [pid 1857408:tid 1857431] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:10275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "playgamesplay.com"] [uri "/.git/refs/heads/main"] [unique_id "adT_GlHRUpPgVEOpIy6sUwAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
updown.io
2026-04-07 10:30:25
(1 month ago)
{"level":"info","ts":1775557720.9930236,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1775557720.9930236,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"2400:cb00:933:1000:b36f:eba0:25c6:c209","remote_port":"10717","client_ip":"2400:cb00:933:1000:b36f:eba0:25c6:c209","proto":"HTTP/1.1","method":"GET","host":"status.pixelcanvas.io","uri":"/public/.env","headers":{"X-Forwarded-For":["2a06:98c0:3600::103"],"Cf-Ew-Via":["15"],"Cf-Worker":["sparxid.workers.dev"],"Cf-Ipcountry":["DE"],"X-Forwarded-Proto":["https"],"Accept-Encoding":["gzip, br"],"Cdn-Loop":["cloudflare; loops=1; subreqs=1"],"Cf-Visitor":["{\"scheme\":\"https\"}"],"Connection":["Keep-Alive"],"Range":["bytes=0-1500"],"Cf-Ray":["9e8858cc2e1b64e8-FRA"],"Cf-Connecting-Ip":["2a06:98c0:3600::103"]}},"bytes_read":0,"user_id":"","duration":0.000889423,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://status.pixelcanvas.io/public/.env"],"Content-Type":[]}}
{"level":"info","ts":1775557723.0955038,"logger":"http.log.acc
...
show less
DDoS Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 13:10:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 09:10:18.389559 2026] [security2:error] [pid 7221:tid 7221] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:12613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.artspacecleveland.org"] [uri "/.git/refs/heads/master"] [unique_id "adOwugP0VTDJi9t31NP5qQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-06 07:09:14
(1 month ago)
2400:cb00:933:1000:b36f:eba0:25c6:c209 - - [06/Apr/2026:10:09:13 +0300] "GET /var/www/.env HTTP/1.1" ...
show more
2400:cb00:933:1000:b36f:eba0:25c6:c209 - - [06/Apr/2026:10:09:13 +0300] "GET /var/www/.env HTTP/1.1" 404 3391 "-" "-"
2400:cb00:933:1000:b36f:eba0:25c6:c209 - - [06/Apr/2026:10:09:14 +0300] "GET /backend/.env HTTP/1.1" 404 781 "-" "-"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 11:59:40
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 07:59:31.860687 2026] [security2:error] [pid 26307:tid 26307] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:10643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.underraided.com"] [uri "/.git/config"] [unique_id "adD9I88zrmtDC-5PFKwPmwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 11:37:11
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:933:1000:b36f:eba0:25c6:c209 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 07:37:04.263663 2026] [security2:error] [pid 401:tid 401] [client 2400:cb00:933:1000:b36f:eba0:25c6:c209:9503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.teleplussolutions.com"] [uri "/.git/HEAD"] [unique_id "adD34B7IUqObU_7pRMZknwAAAGc"]
show less
Brute-Force
Bad Web Bot
Web App Attack