๐จ๐ญ
TheCoon
2026-02-16 03:45:01
(3 months ago)
Automated: Credential theft attempt - JSON bomb served
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-02-16 02:05:54
(3 months ago)
Too many Status 40X (14)
Scanning/Probing (14)
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-15 22:59:42
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-15
Hacking
Web App Attack
SSH
๐ช๐ธ
masterguru
2026-02-15 12:12:44
(3 months ago)
. Matched phrase "/.env" at REQUEST_URI. (210492-123)
Web App Attack
๐ฎ๐ฉ
Burayot
2026-02-15 12:10:32
(3 months ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 45.3.54.129 (GB/United Kingdom/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 45.3.54.129 (GB/United Kingdom/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 11:59:40
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:59:34.052372 2026] [security2:error] [pid 15428:tid 15428] [client 45.3.54.129:59707] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tech-servusa.com"] [uri "/test/.git/config"] [unique_id "aZG1Jv3Fn9KSfo_ScNDsCgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 11:42:07
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 06:42:02.936404 2026] [security2:error] [pid 2804998:tid 2804998] [client 45.3.54.129:50325] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thomasgardner.com"] [uri "/.env.local"] [unique_id "aZGxCrXtO55qRqk1meuHiAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 04:59:12
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 23:59:06.913277 2026] [security2:error] [pid 27879:tid 27879] [client 45.3.54.129:22287] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sullico.com"] [uri "/api/.git/config"] [unique_id "aZFSmlcl2oDB653xpFxbwAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 03:42:11
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 22:42:04.322597 2026] [security2:error] [pid 23249:tid 23249] [client 45.3.54.129:42213] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stenbot.com"] [uri "/test/.git/config"] [unique_id "aZFAjGXNR3hLQXkW20Jz6gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:44:11
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:44:04.301271 2026] [security2:error] [pid 27085:tid 27085] [client 45.3.54.129:50613] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naghmehfarahmand.com"] [uri "/.env.staging"] [unique_id "aZEy9D4a5jrm4RsBwpYVsAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Mangelot Hosting
2026-02-15 02:22:57
(3 months ago)
(modsecurity) srv102 ModSecurity 45.3.54.129 (GB/United Kingdom/-): 5 in the last 3600 secs; Ports: ...
show more
(modsecurity) srv102 ModSecurity 45.3.54.129 (GB/United Kingdom/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 02:20:07
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 21:19:58.048910 2026] [security2:error] [pid 16629:tid 16650] [client 45.3.54.129:57359] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myrasnyder.com"] [uri "/admin/.git/config"] [unique_id "aZEtTo0dBptQCLod9Kq4mAAAANM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-02-15 01:05:48
(3 months ago)
Scanning/Probing (25)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 23:08:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 18:08:35.989848 2026] [security2:error] [pid 10745:tid 10745] [client 45.3.54.129:32293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "littlehorneng.com"] [uri "/.env.local"] [unique_id "aZEAc6RhGYy8Rvb_rnQHQwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-14 22:33:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.54.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Feb 14 17:33:33.107946 2026] [security2:error] [pid 31673:tid 31673] [client 45.3.54.129:40921] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lighthouseinvitations.com"] [uri "/wp/.git/config"] [unique_id "aZD4Pe9FS6YQq3zwpvqt_QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack