๐บ๐ธ
TPI-Abuse
2026-02-19 03:40:07
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:40:00.629704 2026] [security2:error] [pid 1882932:tid 1882944] [client 45.3.32.201:56347] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "killasgarage.bike"] [uri "/.env.production"] [unique_id "aZaGEDJqCGrhtALeXXX4zgAAAMk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 03:02:50
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 22:02:41.296718 2026] [security2:error] [pid 24352:tid 24352] [client 45.3.32.201:23277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kennythompson.com"] [uri "/.env.local"] [unique_id "aZZ9Uan5ltmaw_nahhl2qgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 01:26:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 20:26:23.408005 2026] [security2:error] [pid 4356:tid 4356] [client 45.3.32.201:9269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kamrynbever.com"] [uri "/frontend/.env"] [unique_id "aZZmv_rVaZ72vfKu177sugAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-19 00:05:37
(6 months ago)
Too many Status 40X (11)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 22:55:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 17:55:16.266144 2026] [security2:error] [pid 12973:tid 12973] [client 45.3.32.201:31479] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "varalla.com"] [uri "/dev/.git/config"] [unique_id "aZZDVO8NY4dFCpdjH4yEKwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 18:46:11
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 13:46:03.900840 2026] [security2:error] [pid 15960:tid 15960] [client 45.3.32.201:26605] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thomasandross.com"] [uri "/admin/.git/config"] [unique_id "aZYI63iqX4p7sZ1eu5TqhwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-02-18 14:05:59
(6 months ago)
(mod_security) mod_security (id:949110) triggered by 45.3.32.201 (US/United States/-): N in the last ...
show more
(mod_security) mod_security (id:949110) triggered by 45.3.32.201 (US/United States/-): N in the last X secs
show less
Web App Attack
๐ฆ๐บ
MAGIC
2026-02-08 00:20:22
(7 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฒ๐พ
Rizzy
2026-01-30 23:42:01
(7 months ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
myagent.site
2026-01-15 08:41:15
(8 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐บ๐ธ
TPI-Abuse
2026-01-13 12:33:56
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.32.201 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 13 07:33:52.577351 2026] [security2:error] [pid 19191:tid 19191] [client 45.3.32.201:39455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "americanacademyofteachersofsinging.org"] [uri "/.git/HEAD"] [unique_id "aWY7sB8h-y4umet-2eOWsQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-02 23:17:00
(10 months ago)
Unauthorized connection attempt
Brute-Force
Anonymous
2025-10-29 06:18:52
(10 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐จ๐ฆ
wil.com
2025-10-17 14:55:35
(10 months ago)
GlobalProtect login attempts with user asingleton.
VPN IP
Brute-Force
Anonymous
2025-10-06 07:26:56
(11 months ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.10.06 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.10.06 is noted in report timestamp
show less
Hacking
Brute-Force