๐บ๐ธ
TPI-Abuse
2026-08-22 10:52:45
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 06:52:37.981173 2026] [security2:error] [pid 17556:tid 17556] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:11627] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "animz.com"] [uri "/.git/HEAD"] [unique_id "aol_dV8AUm4r-yAtXIjU4wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 01:25:44
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:25:38.649215 2026] [security2:error] [pid 22531:tid 22555] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:12409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.emehache.com"] [uri "/.git/config"] [unique_id "aoj6kpbfdKoe1ujs5mbCFAAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 00:02:56
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 20:02:51.227204 2026] [security2:error] [pid 5265:tid 5265] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:10648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gree.cloudex.link"] [uri "/.git/HEAD"] [unique_id "aojnKxqJQJIRFxjlhit8mwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 08:48:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 04:48:16.097374 2026] [security2:error] [pid 959:tid 959] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:13125] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.isaacsonpaintings.com"] [uri "/.git/config"] [unique_id "aogQ0CHSVAXbAHO9IH4DhQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 08:33:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 04:33:13.435367 2026] [security2:error] [pid 12743:tid 12743] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:11127] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.boat-registration-greece.com"] [uri "/.git/HEAD"] [unique_id "aoa7yTUcUpExxGP9aVr8FgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 02:32:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 22:32:21.980004 2026] [security2:error] [pid 3810:tid 3840] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:10765] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.moderncabinetcorp.com"] [uri "/.git/HEAD"] [unique_id "aoZnNROpAiwdS1vv3djipQAAAMI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 00:54:42
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 20:54:38.567432 2026] [security2:error] [pid 7583:tid 7583] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:13387] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.bnaiisraelkearny.com"] [uri "/.git/config"] [unique_id "aoT-zpXSyWpfZpGCikBBkAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 12:20:40
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 08:20:36.188698 2026] [security2:error] [pid 8024:tid 8024] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:9260] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.piments.com"] [uri "/.git/config"] [unique_id "aoROFBPUBLbYvglZrKN4FwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:42:51
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:42:44.057234 2026] [security2:error] [pid 26863:tid 26863] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:12341] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.morrofleece.com"] [uri "/.git/config"] [unique_id "aoPGpK7lehslkvcSrzZKPAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 23:14:09
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 19:14:06.684795 2026] [security2:error] [pid 5882:tid 5900] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:11935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "billgiegold.uoexpanse.com"] [uri "/.git/HEAD"] [unique_id "aoOVvlVRNPni7rNVvWOgbQAAAIw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-07-28 10:20:51
(3 weeks ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-15 08:39:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:986:1000:48d7:8807:ae84:13ea (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 04:39:13.559365 2026] [security2:error] [pid 4891:tid 4891] [client 2400:cb00:986:1000:48d7:8807:ae84:13ea:11250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paragontechusa.com"] [uri "/.env.production"] [unique_id "aldHMSPBPodQx1bFjZAaIgAAABw"], referer: https://www.google.com/search?q=paragontechusa.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-02-23 09:43:38
(5 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-02-19 00:18:30
(6 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-02-13 09:43:32
(6 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack