๐บ๐ธ
TPI-Abuse
2026-05-09 05:45:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 01:44:59.787097 2026] [security2:error] [pid 13171:tid 13171] [client 172.70.251.130:12743] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "namefinder.com"] [uri "/.git/config"] [unique_id "af7J21bkTBqkzn8rcRUynQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 03:55:56
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 23:55:49.999696 2026] [security2:error] [pid 16538:tid 16538] [client 172.70.251.130:12698] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.alanrmariotti.com"] [uri "/.git/config"] [unique_id "afLSxRkmemrSvwpOk54q_AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-28 18:06:05
(1 month ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-13 15:15:03
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 13 11:14:55.314290 2026] [security2:error] [pid 4013840:tid 4013840] [client 172.70.251.130:9562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.rayeliotschwartz.com"] [uri "/.git/config"] [unique_id "ad0Ib5rW2sKyl7QsiSnq6AAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 20:17:15
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 16:17:07.747017 2026] [security2:error] [pid 30592:tid 30592] [client 172.70.251.130:11502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.castlewelding.net"] [uri "/.git/HEAD"] [unique_id "adLDQ1AJhAi0Pr6AbHJm7wAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 19:03:13
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 15:03:09.988274 2026] [security2:error] [pid 435:tid 435] [client 172.70.251.130:11822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tex-fun.com"] [uri "/.git/refs/heads/main"] [unique_id "adKx7Wf4JHN4EJjOOww_YAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-05 06:33:08
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 02:33:03.324457 2026] [security2:error] [pid 20483:tid 20483] [client 172.70.251.130:9987] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.photospecialties.net"] [uri "/.git/HEAD"] [unique_id "adICHyUBbiRRmJE98BkEIwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-04 21:46:15
(2 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
๐ซ๐ท
Little Iguana
2026-04-02 16:49:00
(2 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
Anonymous
2026-04-02 13:01:14
(2 months ago)
(mod_security) mod_security triggered on hostname [redacted] 172.70.251.130 (DE/Germany/-)
SQL Injection
๐ต๐น
Information Security
2026-04-01 19:24:41
(2 months ago)
Web App Attack
Web App Attack
๐ซ๐ท
dynamix
2026-03-31 13:10:15
(2 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-31 03:03:58
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.130 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 23:03:52.926778 2026] [security2:error] [pid 22102:tid 22102] [client 172.70.251.130:13926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.perkjazz.com"] [uri "/.env.test"] [unique_id "acs5mEBmY61A1N0jF3JyoQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
thedreamer.nl
2026-03-30 21:38:07
(2 months ago)
172.70.251.130 - - [30/Mar/2026:23:34:13 +0200] "GET /.git/index HTTP/1.1" 499 0 "-" "-" "DE" "Frank ...
show more
172.70.251.130 - - [30/Mar/2026:23:34:13 +0200] "GET /.git/index HTTP/1.1" 499 0 "-" "-" "DE" "Frankfurt am Main" "50.11690" "8.68370"
172.70.251.130 - - [30/Mar/2026:23:34:13 +0200] "GET /.git/logs/HEAD HTTP/1.1" 499 0 "-" "-" "DE" "Frankfurt am Main" "50.11690" "8.68370"
172.70.251.130 - - [30/Mar/2026:23:34:13 +0200] "GET /.git/HEAD HTTP/1.1" 499 0 "-" "-" "DE" "Frankfurt am Main" "50.11690" "8.68370"
172.70.251.130 - - [30/Mar/2026:23:34:13 +0200] "GET /.env.backup HTTP/1.1" 499 0 "-" "-" "DE" "Frankfurt am Main" "50.11690" "8.68370"
...
show less
Hacking
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Viveronese
2026-03-30 21:16:13
(2 months ago)
HTTP vulnerability scanning
Web App Attack