๐ฉ๐ช
FeG Deutschland
2026-08-27 04:47:43
(8 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 19:49:26
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 15:49:20.881813 2026] [security2:error] [pid 27261:tid 27261] [client 172.69.223.71:12409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.stevestoyostove.com"] [uri "/.git/config"] [unique_id "ao9DQOT7qp-lgczHu8Nz4AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 13:53:33
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:53:26.362271 2026] [security2:error] [pid 51451:tid 51498] [client 172.69.223.71:14032] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.abusaimeh.com"] [uri "/.git/HEAD"] [unique_id "ao7v1nBXc4XiPuuTtUjujQAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 01:02:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 21:02:47.720146 2026] [security2:error] [pid 14009:tid 14009] [client 172.69.223.71:10257] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.estellenussbaum.com"] [uri "/.git/HEAD"] [unique_id "ao47N1-vHLiuOopASyR90gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 19:10:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 15:10:36.920874 2026] [security2:error] [pid 1449:tid 1449] [client 172.69.223.71:10723] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rongrapes.com"] [uri "/.git/config"] [unique_id "ao3orKUwC88wjBgnhgzQ6wAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:53:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:52:58.633872 2026] [security2:error] [pid 13616:tid 13672] [client 172.69.223.71:10315] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ogier.us"] [uri "/.git/HEAD"] [unique_id "ao1X6rT1onG24Inx0f2cGQAAAIM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:35:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:35:31.229532 2026] [security2:error] [pid 7784:tid 7784] [client 172.69.223.71:10129] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bbproductionsonline.com"] [uri "/.git/config"] [unique_id "ao1Fw9oUR-LBMGhjrGRr9gAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 05:40:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 01:40:33.322934 2026] [security2:error] [pid 12301:tid 12301] [client 172.69.223.71:11364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.fales-lorenz.net"] [uri "/.git/config"] [unique_id "ao0q0c1c1RVQDH0zNbx8rAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 04:51:15
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 00:51:08.036706 2026] [security2:error] [pid 9347:tid 9347] [client 172.69.223.71:12860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.minetterisquez.com"] [uri "/.git/config"] [unique_id "ao0fPH1x3BjUn6upXjMBMwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 03:12:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 23:12:21.719316 2026] [security2:error] [pid 5211:tid 5211] [client 172.69.223.71:12091] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bisbyphotography.com"] [uri "/.git/config"] [unique_id "ao0IFblXn_eL2Fxw98TuTAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-24 07:19:02
(3 days ago)
[Mon Aug 24 17:19:00.770417 2026] [security2:error] [pid 83735] [client 172.69.223.71:14238] [client ...
show more
[Mon Aug 24 17:19:00.770417 2026] [security2:error] [pid 83735] [client 172.69.223.71:14238] [client 172.69.223.71] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "paulshipley.id.au"] [uri "/.git/config"] [unique_id "aovwZIUnZ503Ifx9AJXydAAAAAg"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 02:12:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.71 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 22:12:20.163288 2026] [security2:error] [pid 3230:tid 3355] [client 172.69.223.71:11990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.teritemme.com"] [uri "/.git/config"] [unique_id "aouohPiMwFO0X8ksTLFjjAAAAlY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ป๐ช
LUISE
2026-08-10 04:27:17
(2 weeks ago)
Vulnerability scanning for Web/phpMyAdmin files on ULA server 72-23.
Hacking
Bad Web Bot
๐ฌ๐ง
OptimusGO
2026-08-07 19:38:21
(2 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-07 20:38:21 UTC
Log evidence:
172.69.223.71 - - [07/Aug/2026:20:38:20 +0100] "GET /server/main%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
08/07/2026-20:38:20.217561 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.69.223.71:13207 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
๐ง๐ช
madeit
2026-08-05 00:32:20
(3 weeks ago)
Web App Attack