๐ฉ๐ช
Kreapptivo
2025-04-25 17:38:59
(1 year ago)
[25/Apr/2025:19:38:57 +0200] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Macintosh; I ...
show more
[25/Apr/2025:19:38:57 +0200] Web-Request: "GET /.git/config", User-Agent: "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.3.1 Safari/605.1.15"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 16:34:48
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 12:34:42.324430 2025] [security2:error] [pid 2850523:tid 2850523] [client 84.32.71.102:56138] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fathereeinc.com"] [uri "/.git/config"] [unique_id "aAu5oivmnlyvxGGboim_ZAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
sc user
2025-04-25 16:33:06
(1 year ago)
(mod_security) mod_security triggered on hostname [redacted] 84.32.71.102 (US/United States/-)
SQL Injection
๐ง๐ช
cmbplf
2025-04-25 16:25:20
(1 year ago)
185 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-04-25 16:02:34
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 12:02:28.160973 2025] [security2:error] [pid 10204:tid 10204] [client 84.32.71.102:36246] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newhopepetgrooming.com"] [uri "/.git/config"] [unique_id "aAuyFI3e8wVk6FydS8n04QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 15:35:45
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 11:35:37.652504 2025] [security2:error] [pid 29416:tid 29416] [client 84.32.71.102:42334] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "maunakeavista.com"] [uri "/.git/config"] [unique_id "aAuryQekw48JQFdZyxGvhQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 15:14:13
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 11:14:09.083758 2025] [security2:error] [pid 3009:tid 3009] [client 84.32.71.102:47376] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anchorroots.com"] [uri "/.git/config"] [unique_id "aAumwacSo3eCbL3ucaAi9AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 14:44:31
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 10:44:26.664873 2025] [security2:error] [pid 19610:tid 19617] [client 84.32.71.102:56434] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pryclogistica.com"] [uri "/.git/config"] [unique_id "aAufynuF7hn8vVmlNjlAFwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 14:26:05
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 10:26:02.259055 2025] [security2:error] [pid 8162:tid 8162] [client 84.32.71.102:29196] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jspd.com"] [uri "/.git/config"] [unique_id "aAuberkH6XNkzs-tDFrhVAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 14:09:02
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 10:08:57.725235 2025] [security2:error] [pid 21212:tid 21212] [client 84.32.71.102:42234] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intrialconsultants.com"] [uri "/.git/config"] [unique_id "aAuXeTqvCZk76F_JvlFSagAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-25 13:49:00
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 25 09:48:54.302895 2025] [security2:error] [pid 3863443:tid 3863443] [client 84.32.71.102:2664] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alanahaynes.com"] [uri "/.git/config"] [unique_id "aAuSxhG7RzRXKmLNB4zlgAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-13 09:08:52
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 13 05:08:48.421200 2024] [security2:error] [pid 22997] [client 84.32.71.102:2719] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||mjkhan.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "mjkhan.com"] [uri "/old/wallet.dat"] [unique_id "ZfFtIK3TkcbVxhadUdwzTAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-08 22:23:14
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 08 17:23:08.811957 2024] [security2:error] [pid 26351] [client 84.32.71.102:52091] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||jeromebrownmba.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "jeromebrownmba.com"] [uri "/backups/mysql.sql"] [unique_id "ZeuPzCVjHztEsgo1vfiqvQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-03-02 06:01:38
(2 years ago)
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 02 01:01:34.262625 2024] [security2:error] [pid 12983] [client 84.32.71.102:59303] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-accessories.net"] [uri "/bak/.env"] [unique_id "ZeLAvpVwv4cbLb_WW4VGdAAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2024-02-29 10:27:36
(2 years ago)
(mod_security) mod_security (id:210730) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210730) triggered by 84.32.71.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Feb 29 05:27:29.348105 2024] [security2:error] [pid 8841] [client 84.32.71.102:60529] [client 84.32.71.102] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.crypto-stamps.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.crypto-stamps.com"] [uri "/old/wallet.dat"] [unique_id "ZeBcEbOxVqUysdWDo5n_HQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack