π©πͺ
www.mammazone.it
2026-08-22 03:46:07
(21 hours ago)
[Sat Aug 22 05:46:06.139011 2026] [proxy_fcgi:error] [pid 743073] [client 172.68.15.166:13161] AH010 ...
show more
[Sat Aug 22 05:46:06.139011 2026] [proxy_fcgi:error] [pid 743073] [client 172.68.15.166:13161] AH01071: Got error 'Primary script unknown'
[Sat Aug 22 05:46:06.933582 2026] [proxy_fcgi:error] [pid 743073] [client 172.68.15.166:13161] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
Anonymous
2026-08-17 20:43:24
(5 days ago)
[Mon Aug 17 22:43:23.054077 2026] [authz_core:error] [pid 5889] [client 172.68.15.166:11719] AH01630 ...
show more
[Mon Aug 17 22:43:23.054077 2026] [authz_core:error] [pid 5889] [client 172.68.15.166:11719] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Aug 17 22:43:23.428888 2026] [authz_core:error] [pid 5889] [client 172.68.15.166:11719] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Aug 17 22:43:23.676223 2026] [authz_core:error] [pid 5889] [client 172.68.15.166:11719] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
π¨π
4server
2026-08-16 21:50:15
(6 days ago)
[SunAug1623:50:11.6255642026][security2:error][pid509399:tid509669][client172.68.15.166:0]ModSecurit ...
show more
[SunAug1623:50:11.6255642026][security2:error][pid509399:tid509669][client172.68.15.166:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"465\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"autodiscover.buonviaggio.ch\"][uri\"/.git/config\"][unique_id\"aoIwkzr-BUXsE7JOsNefqwAAAMI\"]
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 11:07:40
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 07:07:35.870745 2026] [security2:error] [pid 20414:tid 20430] [client 172.68.15.166:13612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.htpsocal.com"] [uri "/.git/config"] [unique_id "aoGZ902JDkMHdF5sOJ7owgAAAUM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 07:15:59
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:15:51.429366 2026] [security2:error] [pid 5751:tid 5835] [client 172.68.15.166:9360] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.millicanjones.com"] [uri "/.git/HEAD"] [unique_id "aoFjp8IL2RneyCUzHUWYwgAAAZI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 04:46:16
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:46:12.097774 2026] [security2:error] [pid 9452:tid 9452] [client 172.68.15.166:14141] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.redwingboot.com"] [uri "/.git/config"] [unique_id "aoFAlLOkLZM5uCYVVe3xpAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-14 10:21:09
(1 week ago)
Web App Attack
Anonymous
2026-07-26 07:50:05
(3 weeks ago)
| [Dangerous/Russia] Aggressive IP 172.68.15.166 (~30 hits). Type: DoS Defender- Web server 400 erro ...
show more
| [Dangerous/Russia] Aggressive IP 172.68.15.166 (~30 hits). Type: DoS Defender- Web server 400 error code
show less
Web App Attack
Hacking
SQL Injection
π¬π§
pinguin
2026-06-23 12:07:10
(1 month ago)
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from US.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /
UA: Mozilla/5.0 (iPhone; CPU iPhone OS 13_2_3 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/13.0.3 Mobile/15E148 Safari/604.1
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-05-15 09:15:25
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 05:15:17.480367 2026] [security2:error] [pid 14932:tid 14932] [client 172.68.15.166:11132] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "heathdiesel.com"] [uri "/sftp-config.json"] [unique_id "agbkJW1iTryTFt5a-_srngAAAAM"], referer: https://www.google.com/search?q=heathdiesel.com
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-01 02:06:24
(4 months ago)
Scanning/Probing (16)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-31 01:18:29
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 21:18:22.585387 2026] [security2:error] [pid 11104:tid 11104] [client 172.68.15.166:11225] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.batfry.com"] [uri "/admin/.env"] [unique_id "acsg3k4QQkPMLmfKU-jw6gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-30 18:34:19
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 14:34:14.854198 2026] [security2:error] [pid 9759:tid 9759] [client 172.68.15.166:11270] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.fastquizmaker.com"] [uri "/api/.env"] [unique_id "acrCJuToVbz2JiJ9f7DTgAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-30 17:35:43
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 13:35:36.974096 2026] [security2:error] [pid 5285:tid 5381] [client 172.68.15.166:13537] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.darkestmoonart.com"] [uri "/.env~"] [unique_id "acq0aFGih4jqsfpBf-f71QAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-30 16:04:59
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.15.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:04:50.900239 2026] [security2:error] [pid 16293:tid 16293] [client 172.68.15.166:10411] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.rschaefer.net"] [uri "/.env"] [unique_id "acqfIl3a5S36jIWPq2N7pAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack