๐บ๐ธ
TPI-Abuse
2026-08-27 02:34:52
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:34:47.905241 2026] [security2:error] [pid 23630:tid 23630] [client 51.83.66.148:49328] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thehandyfamily.net"] [uri "/.git/config"] [unique_id "ao-iR7F_2yMdr3cEQ91fXwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-26 21:59:09
(12 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-25.
show less
Web App Attack
SSH
Hacking
๐ง๐ท
Halux
2026-08-26 06:50:18
(1 day ago)
51.83.66.148 Probing protected path or service
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 05:04:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 01:04:36.842382 2026] [security2:error] [pid 6943:tid 6943] [client 51.83.66.148:33238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bcerg.org"] [uri "/.env"] [unique_id "ao5z5HUfBM27zr9Z5-ZvzgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 23:28:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 19:27:57.825065 2026] [security2:error] [pid 24599:tid 24599] [client 51.83.66.148:55718] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "3pl.com"] [uri "/.git/config"] [unique_id "ao4k_TJKZb-ihC8xJndE-wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-25 22:00:53
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-25
Web App Attack
SSH
Hacking
๐ธ๐ช
vaia.cloud
2026-08-25 11:20:02
(1 day ago)
crowdsecurity/http-cve-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:44:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:44:29.762781 2026] [security2:error] [pid 1219377:tid 1219476] [client 51.83.66.148:60224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.api.neotienda.com"] [uri "/.git/config"] [unique_id "ao1V7RZj29ZxZ2W7ZIdR2AAAAgY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
conseilgouz
2026-08-25 08:11:36
(2 days ago)
doe-17 : Block hidden directories=>/.env(/)
Hacking
๐ฉ๐ช
inlink.ltd
2026-08-25 06:52:56
(2 days ago)
dot file probe
Web App Attack
Anonymous
2026-08-25 06:05:02
(2 days ago)
suspicious request in access.log
Web App Attack
๐ง๐ช
voormedia
2026-08-25 01:30:54
(2 days ago)
Accessed trap at '/.env'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 00:55:16
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 20:55:13.149510 2026] [security2:error] [pid 2544:tid 2544] [client 51.83.66.148:45474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alfadventurecenter.org"] [uri "/.env"] [unique_id "aozn8YagXw8nz4Tp2ZeDywAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
itsnixk
2026-08-24 23:15:57
(2 days ago)
(mod_security) mod_security (id:930130) triggered by 51.83.66.148 (FR/France/ns3145676.ip-51-83-66.e ...
show more
(mod_security) mod_security (id:930130) triggered by 51.83.66.148 (FR/France/ns3145676.ip-51-83-66.eu): 1 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: [Mon Aug 24 19:15:55.696292 2026] [security2:error] [pid 647576:tid 647591] [remote 51.83.66.148:0] ModSecurity: Access denied with code 406 (phase 1). Matched phrase ".git/" at REQUEST_FILENAME. [file "/etc/modsecurity.d/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "150"] [id "930130"] [msg "Restricted File Access Attempt"] [redacted] [severity "CRITICAL"] [ver "OWASP_CRS/4.28.0"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "OWASP_CRS/ATTACK-LFI"] [tag "capec/1000/255/153/126"] [redacted] [uri "/.git/config"] [unique_id "aozQqwjdTi87ElNc7dBJcQAAZg0"]
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-24 23:11:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 51.83.66.148 (ns3145676.ip-51-83-66.eu): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 19:11:30.204881 2026] [security2:error] [pid 5250:tid 5250] [client 51.83.66.148:44034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "photojeniq.com"] [uri "/.env"] [unique_id "aozPotxr9NkQQR3aHVVPQQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack