πΊπΈ
TPI-Abuse
2026-10-01 09:09:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 05:09:23.645765 2026] [security2:error] [pid 19611:tid 19611] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:11160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.comicpreservation.com"] [uri "/.env.local"] [unique_id "ar4jQ8kR7pqzhyEGKMmaYwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
pm33
2026-10-01 06:43:05
(2 days ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 06:31:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 02:31:39.836263 2026] [security2:error] [pid 29780:tid 29780] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:11581] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rnance.com"] [uri "/.git/HEAD"] [unique_id "ar3-SzNe_L7ENiDKgI7h-gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 06:04:03
(2 days ago)
(mod_security) mod_security (id:210730) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210730) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 02:03:35.952086 2026] [security2:error] [pid 12291:tid 12291] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:9910] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.consolidatedoperationsgroup.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.consolidatedoperationsgroup.com"] [uri "/index.php.bak"] [unique_id "ar33tyJMGvl63m146CRjAwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 15:34:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 11:34:16.897487 2026] [security2:error] [pid 23491:tid 23491] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:9438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.televisonic.com"] [uri "/wp-config.php"] [unique_id "ar0r-M5EBGw-Y6CgjIHKGQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
pltcldvlpr
2026-09-30 11:14:51
(3 days ago)
CMS/framework probe: 2400:cb00:996:1000:48b:e1a5:804e:ea26 - - [30/Sep/2026:13:14:50 +0200] "GET /ph ...
show more
CMS/framework probe: 2400:cb00:996:1000:48b:e1a5:804e:ea26 - - [30/Sep/2026:13:14:50 +0200] "GET /phpinfo.php HTTP/2.0" 404 1499 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:123.0) Gecko/20100101 Firefox/123.0" asn=13335 org="Cloudflare, Inc." country=NL
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 10:56:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:56:21.051904 2026] [security2:error] [pid 2583:tid 2583] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:12871] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "frenchla.com"] [uri "/.env.production"] [unique_id "arzq1TVf4vrRJAEYbbcZTAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 06:57:40
(3 days ago)
(mod_security) mod_security (id:210730) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210730) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 02:57:34.274926 2026] [security2:error] [pid 9458:tid 9458] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:13818] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.oliverhardy.com|F|2"] [data ".php.bak"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.oliverhardy.com"] [uri "/index.php.bak"] [unique_id "aryy3mdR4wP9hgrVvtH7lgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
pm33
2026-09-29 19:45:40
(3 days ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 05:14:12
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 01:14:09.248475 2026] [security2:error] [pid 31146:tid 31146] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:9641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "timbrazier.com"] [uri "/wp-config.php"] [unique_id "artJIaqD-ZTPu9foSoxwhAAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 09:28:17
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 05:28:12.511794 2026] [security2:error] [pid 864:tid 864] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:10046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.collectorcarconsultants.com"] [uri "/.env.local"] [unique_id "arozLLknfNEXMw_7sgIxjgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 08:03:47
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 04:03:40.128792 2026] [security2:error] [pid 24290:tid 24290] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:9876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ruralroutes.ca"] [uri "/.git/HEAD"] [unique_id "arofXLfVOmK3zSNukCHDPQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-26 09:50:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown) ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:996:1000:48b:e1a5:804e:ea26 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 05:50:34.973733 2026] [security2:error] [pid 28227:tid 28253] [client 2400:cb00:996:1000:48b:e1a5:804e:ea26:10968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.layoverlocations.com"] [uri "/.env.backup"] [unique_id "areVahzJfDwf5gDkDoEqsQAAANE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π―π΅
Kinsei Engineering Inc.
2025-08-24 12:39:41
(1 year ago)
UFW:High-frequency access to unused ports
Port Scan