|
๐จ๐ฆ
35.183.71.68
|
|
(mod_security) mod_security (id:210492) triggered by 35.183.71.68 (ec2-35-183-71-68.ca-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 35.183.71.68 (ec2-35-183-71-68.ca-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:57.811333 2026] [security2:error] [pid 26482:tid 26482] [client 35.183.71.68:46380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chevronparkett.com"] [uri "/.git/config"] [unique_id "aoNMlbTP-MOWO97qx1ZYIwAAACw"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
35.229.86.59
|
|
(mod_security) mod_security (id:210492) triggered by 35.229.86.59 (59.86.229.35.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 35.229.86.59 (59.86.229.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:57.048186 2026] [security2:error] [pid 5168:tid 5168] [client 35.229.86.59:44232] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mark-et-ing-1llc.com"] [uri "/.git/config"] [unique_id "aoNMlRCEGQhPZopum4gBzAAAABg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ถ๐ฆ
212.70.108.20
|
|
(mod_security) mod_security (id:225170) triggered by 212.70.108.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:225170) triggered by 212.70.108.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:54.176132 2026] [security2:error] [pid 23105:tid 23208] [client 212.70.108.20:40489] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||dwcmachining.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "dwcmachining.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoNMkt1IIvrWVbVkr1Zo6QAAAgs"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ต๐ฐ
182.177.89.7
|
|
(mod_security) mod_security (id:240335) triggered by 182.177.89.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 182.177.89.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:48.986697 2026] [security2:error] [pid 28200:tid 28200] [client 182.177.89.7:54049] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 182.177.89.7 (+1 hits since last alert)|lgbtqhistoryinaustin.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "lgbtqhistoryinaustin.org"] [uri "/xmlrpc.php"] [unique_id "aoNMjPQu57Zhrm_ERBCxRgAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐น๐ฟ
41.222.180.58
|
|
(mod_security) mod_security (id:240335) triggered by 41.222.180.58 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 41.222.180.58 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:50.663640 2026] [security2:error] [pid 10575:tid 10575] [client 41.222.180.58:40088] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5965"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 41.222.180.58 (+1 hits since last alert)|goodfrequencies.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "goodfrequencies.com"] [uri "/xmlrpc.php"] [unique_id "aoNMjgKGxNHDyO0RzNegjAAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
76.32.171.133
|
|
(mod_security) mod_security (id:210730) triggered by 76.32.171.133 (syn-076-032-171-133.res.spectrum ...
show more
(mod_security) mod_security (id:210730) triggered by 76.32.171.133 (syn-076-032-171-133.res.spectrum.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:27.262364 2026] [security2:error] [pid 8097:tid 8097] [client 76.32.171.133:7664] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||sawted.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "sawted.com"] [uri "/sawted/author/paul-mainstone/page/2/[email protected]"] [unique_id "aoNMd2yj5sOqtcQaOCS5fwAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
74.208.179.65
|
|
(mod_security) mod_security (id:210492) triggered by 74.208.179.65 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 74.208.179.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:23.377978 2026] [security2:error] [pid 9300:tid 9300] [client 74.208.179.65:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "local639.com"] [uri "/.env"] [unique_id "aoNMc2t52QCL767mdBx1ZQAAAAc"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ฉ
103.35.156.140
|
|
(mod_security) mod_security (id:240335) triggered by 103.35.156.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 103.35.156.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:21.893342 2026] [security2:error] [pid 23173:tid 23173] [client 103.35.156.140:51825] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.35.156.140 (+1 hits since last alert)|jesussotoca.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "jesussotoca.com"] [uri "/xmlrpc.php"] [unique_id "aoNMccNwnZVQL-edSCE2wwAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ณ๐ฑ
2a0b:8bc0:2:3bb6::1
|
|
(mod_security) mod_security (id:210492) triggered by 2a0b:8bc0:2:3bb6::1 (Unknown): 1 in the last 30 ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:8bc0:2:3bb6::1 (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:15.128077 2026] [security2:error] [pid 13013:tid 13013] [client 2a0b:8bc0:2:3bb6::1:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.c2cservices.com"] [uri "/.git/HEAD"] [unique_id "aoNMa9UMuyK6tHPy2d-A0QAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐บ๐ธ
132.196.30.78
|
|
(mod_security) mod_security (id:240335) triggered by 132.196.30.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 132.196.30.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:01:15.779133 2026] [security2:error] [pid 13007:tid 13007] [client 132.196.30.78:22474] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 132.196.30.78 (+1 hits since last alert)|www.bostonmarathonstories.bostonlog.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "www.bostonmarathonstories.bostonlog.com"] [uri "/xmlrpc.php"] [unique_id "aoNMa0VdY0Xwd9-4k7-RJgAAACY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ญ๐ฐ
42.201.192.49
|
|
(mod_security) mod_security (id:210350) triggered by 42.201.192.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210350) triggered by 42.201.192.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:54.713570 2026] [security2:error] [pid 6401:tid 6401] [client 42.201.192.49:30304] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||doorofhopechurch.org|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "doorofhopechurch.org"] [uri "/assets"] [unique_id "aoNMVgnS4SqGrqcbcA67NAAAAD8"], referer: https://doorofhopechurch.org/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ณ๐ฑ
150.40.127.65
|
|
(mod_security) mod_security (id:210350) triggered by 150.40.127.65 (tor-exit.nl4.2cb.li): 1 in the l ...
show more
(mod_security) mod_security (id:210350) triggered by 150.40.127.65 (tor-exit.nl4.2cb.li): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:47.952477 2026] [security2:error] [pid 10397:tid 10397] [client 150.40.127.65:43836] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||investmentprotectionservices.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "investmentprotectionservices.com"] [uri "/cpanel/"] [unique_id "aoNMT8Yl43OVkpEVmDA9OgAAAAM"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ท๐ด
85.204.69.250
|
|
(mod_security) mod_security (id:225170) triggered by 85.204.69.250 (server17.romania-webhosting.com) ...
show more
(mod_security) mod_security (id:225170) triggered by 85.204.69.250 (server17.romania-webhosting.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:44.761377 2026] [security2:error] [pid 8003:tid 8003] [client 85.204.69.250:53192] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||climasyequipos.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "climasyequipos.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aoNMTJqFu30HZ0z8SdcMIQAAAA0"], referer: https://climasyequipos.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
172.68.151.7
|
|
(mod_security) mod_security (id:210492) triggered by 172.68.151.7 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:43.829032 2026] [security2:error] [pid 14083:tid 14083] [client 172.68.151.7:12362] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adm-sal.com"] [uri "/.git/config"] [unique_id "aoNMS3_r1YaWLVH58_5EuwAAAAY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
172.68.151.6
|
|
(mod_security) mod_security (id:210492) triggered by 172.68.151.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:43.827845 2026] [security2:error] [pid 7327:tid 7327] [client 172.68.151.6:11752] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adm-sal.com"] [uri "/.git/HEAD"] [unique_id "aoNMSwix6M4suTinLJuIAgAAAAk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
92.205.182.106
|
|
(mod_security) mod_security (id:210492) triggered by 92.205.182.106 (106.182.205.92.host.secureserve ...
show more
(mod_security) mod_security (id:210492) triggered by 92.205.182.106 (106.182.205.92.host.secureserver.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:31.254071 2026] [security2:error] [pid 11939:tid 11939] [client 92.205.182.106:56422] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "howietaylor.com"] [uri "/.env"] [unique_id "aoNMP42dGtbnfRlbJaCHrwAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
172.71.119.105
|
|
(mod_security) mod_security (id:210492) triggered by 172.71.119.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 14:00:32.087761 2026] [security2:error] [pid 19518:tid 19518] [client 172.71.119.105:12480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aiinlocal.com"] [uri "/.git/HEAD"] [unique_id "aoNMQJIujEEmMl5ZNGhA_QAAABY"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ธ๐ฆ
130.164.157.252
|
|
(mod_security) mod_security (id:225170) triggered by 130.164.157.252 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:225170) triggered by 130.164.157.252 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:59:38.300137 2026] [security2:error] [pid 11886:tid 11886] [client 130.164.157.252:58086] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||drdot.xyz|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "drdot.xyz"] [uri "/wp-json/wp/v2/users"] [unique_id "aoNMCkk-4ZUWJoxjKBoi5QAAAB4"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐น๐ผ
34.81.139.39
|
|
(mod_security) mod_security (id:210492) triggered by 34.81.139.39 (39.139.81.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.81.139.39 (39.139.81.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:59:37.647751 2026] [security2:error] [pid 2973:tid 2973] [client 34.81.139.39:35222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ibook.micahgartman.com"] [uri "/.git/config"] [unique_id "aoNMCViJ8JJ-he4_w_4-XAAAABk"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ง๐ท
20.206.96.72
|
|
(mod_security) mod_security (id:240335) triggered by 20.206.96.72 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:240335) triggered by 20.206.96.72 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:59:27.464109 2026] [security2:error] [pid 23060:tid 23060] [client 20.206.96.72:19141] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 20.206.96.72 (+1 hits since last alert)|robotsinme.org|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "robotsinme.org"] [uri "/xmlrpc.php"] [unique_id "aoNL_3u4Yp0TpoG4P7UngwAAABI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
2400:cb00:533:1000:be8c:c24f:62cc:a15e
|
|
(mod_security) mod_security (id:210492) triggered by 2400:cb00:533:1000:be8c:c24f:62cc:a15e (Unknown ...
show more
(mod_security) mod_security (id:210492) triggered by 2400:cb00:533:1000:be8c:c24f:62cc:a15e (Unknown): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:59:03.847686 2026] [security2:error] [pid 3318:tid 3330] [client 2400:cb00:533:1000:be8c:c24f:62cc:a15e:9313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajbruner.uoexpanse.com"] [uri "/.git/HEAD"] [unique_id "aoNL55-WILvZmOsjVjV8UQAAAAg"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ญ๐ฐ
183.87.96.68
|
|
(mod_security) mod_security (id:210350) triggered by 183.87.96.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 183.87.96.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:59:01.319720 2026] [security2:error] [pid 18776:tid 18776] [client 183.87.96.68:52287] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||candlesandwoodcrafts.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "candlesandwoodcrafts.com"] [uri "/"] [unique_id "aoNL5dK7nvK3-gIYVXoSVgAAAAM"], referer: https://candlesandwoodcrafts.com/
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ณ๐ฆ
105.232.176.7
|
|
(mod_security) mod_security (id:240335) triggered by 105.232.176.7 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:240335) triggered by 105.232.176.7 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:58:55.730172 2026] [security2:error] [pid 6605:tid 6605] [client 105.232.176.7:32568] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 105.232.176.7 (+1 hits since last alert)|faithlines.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "faithlines.com"] [uri "/xmlrpc.php"] [unique_id "aoNL35EIlcPZT4M_d-VmvwAAABQ"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ฎ๐ณ
103.117.14.202
|
|
(mod_security) mod_security (id:240335) triggered by 103.117.14.202 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:240335) triggered by 103.117.14.202 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:58:43.224635 2026] [security2:error] [pid 5188:tid 5188] [client 103.117.14.202:0] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 103.117.14.202 (+1 hits since last alert)|local639.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "local639.com"] [uri "/xmlrpc.php"] [unique_id "aoNL08Kgg0ZLLDnrLWqVNwAAABE"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
๐ซ๐ท
172.71.123.66
|
|
(mod_security) mod_security (id:210492) triggered by 172.71.123.66 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 13:58:44.154273 2026] [security2:error] [pid 3318:tid 3343] [client 172.71.123.66:10165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ajbruner.uoexpanse.com"] [uri "/.git/config"] [unique_id "aoNL1J-WILvZmOsjVjV8KgAAABU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|