๐บ๐ธ
TPI-Abuse
2026-09-22 01:07:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 21:07:09.168204 2026] [security2:error] [pid 3601:tid 3601] [client 46.29.250.87:53288] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "w1rq.com"] [uri "/.git/HEAD"] [unique_id "arHUvQsm96ZYJxS23y0pqwAAADw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-21 22:03:43
(1 day ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-09-20.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
BlueWire Hosting
2026-09-21 18:22:10
(1 day ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ฉ๐ช
LRob
2026-09-21 16:36:47
(1 day ago)
This address is looking for secret files on our sites: .git directories, .env files, credential and ...
show more
This address is looking for secret files on our sites: .git directories, .env files, credential and configuration files, database dumps, backups. This is a targeted search for credentials to break into the sites, blocked at the first request. Please check the machine behind it for an attack tool or malware. | method: GET | path: /.git/HEAD | 2026-09-21 16:36 UTC
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-21 15:12:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 11:12:51.457403 2026] [security2:error] [pid 10567:tid 10692] [client 46.29.250.87:34248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vancekelly.com"] [uri "/.git/HEAD"] [unique_id "arFJc6wQYSIoQZ0rFuKywwAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 23:17:12
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 19:17:06.968862 2026] [security2:error] [pid 22711:tid 22711] [client 46.29.250.87:44979] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tipdavid.com"] [uri "/.git/HEAD"] [unique_id "arBpcg2Sus5FLPyKIRgVcwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 23:15:04
(2 days ago)
suspicious request in access.log
Web App Attack
Anonymous
2026-09-20 23:07:11
(2 days ago)
Automated web scanner. Requested suspicious paths: /.git/HEAD. UTC: 2026-09-20 22:59:41.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 21:15:43
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 17:15:35.468533 2026] [security2:error] [pid 27090:tid 27090] [client 46.29.250.87:33533] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tevalaur.com"] [uri "/.git/HEAD"] [unique_id "arBM92cYnyt8bGbcTP5kJgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 20:32:14
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 16:32:09.242588 2026] [security2:error] [pid 16744:tid 16744] [client 46.29.250.87:41180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cbrsanpedro.cl.tecnoconce.com"] [uri "/.git/HEAD"] [unique_id "arBCye4vupdaA2VCo62CIwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 14:17:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 10:17:22.593730 2026] [security2:error] [pid 11256:tid 11304] [client 46.29.250.87:47378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "metabotic.com"] [uri "/.git/HEAD"] [unique_id "aq_q8guggv6v3hsMMRy7hwAAANA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 07:56:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 46.29.250.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 03:56:41.010577 2026] [security2:error] [pid 13869:tid 13869] [client 46.29.250.87:33668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.manufacturassantiago.com.spyasociados.com"] [uri "/.git/HEAD"] [unique_id "aq-RuV7NY38-BUfdhP5jeQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-09-20 04:03:05
(2 days ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐ณ๐ฑ
homeshowdomain.nl
2026-09-19 21:59:30
(3 days ago)
Auto-ban: >3000 req/min op 2026-09-19
Web App Attack
SSH
Hacking
๐ฌ๐ง
[email protected]
2026-09-19 19:32:54
(3 days ago)
Automated report [Server: quest1]: IP caught scanning and attacking Aison Active Defense Honeypot tr ...
show more
Automated report [Server: quest1]: IP caught scanning and attacking Aison Active Defense Honeypot traps.
show less
Port Scan
Hacking
Brute-Force