πΊπΈ
TPI-Abuse
2026-05-09 03:41:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 23:41:32.174301 2026] [security2:error] [pid 21221:tid 21221] [client 172.70.251.96:9641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cadimpressions.com"] [uri "/.git/config"] [unique_id "af6s7FXJWVjeEH3FWxVFUwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
trentwiles.com
2026-04-26 00:51:51
(3 months ago)
Unauthorized connection attempt detected from IP address 172.70.251.96 to port 443 [SYD]
Port Scan
πΊπΈ
TPI-Abuse
2026-04-25 12:16:20
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 08:16:14.973465 2026] [security2:error] [pid 822132:tid 822132] [client 172.70.251.96:9826] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lavozdominicana.com"] [uri "/.git/config"] [unique_id "aeywjqiueV28Emmle6w06AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 02:12:53
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 22:12:48.085374 2026] [security2:error] [pid 763090:tid 763090] [client 172.70.251.96:10157] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abecasis.com"] [uri "/.git/logs/HEAD"] [unique_id "adRoIJOdPnDN1n9ePg7FpQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 02:37:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 22:37:15.101167 2026] [security2:error] [pid 6613:tid 6624] [client 172.70.251.96:10038] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.a2zlns.com"] [uri "/.git/refs/heads/master"] [unique_id "adMcW4feqLw13eHL7PkpVQAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
ghostwarriors
2026-04-05 01:20:04
(3 months ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
πΊπΈ
mnsf
2026-04-04 14:05:36
(3 months ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-01 14:24:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 10:24:06.879415 2026] [security2:error] [pid 9022:tid 9022] [client 172.70.251.96:12997] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.fastpc.biz"] [uri "/.git/refs/heads/master"] [unique_id "ac0qhnsDQaQBmC_jyCpzxQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-01 06:30:12
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 02:30:07.073854 2026] [security2:error] [pid 14119:tid 14129] [client 172.70.251.96:10410] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yubasutterphotographer.com"] [uri "/.git/index"] [unique_id "acy7b_AyPBjdFhJIB3JNqQAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-01 05:05:36
(3 months ago)
Too many Status 40X (17)
Scanning/Probing (18)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-31 08:50:36
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 31 04:50:31.414754 2026] [security2:error] [pid 1506:tid 1533] [client 172.70.251.96:9544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.slingshotpro.com"] [uri "/.env"] [unique_id "acuK11RdaDgLHLubfgxawQAAAJg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-31 02:20:37
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 22:20:31.570359 2026] [security2:error] [pid 14432:tid 14432] [client 172.70.251.96:10012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.demberdatabase.com"] [uri "/.git/logs/HEAD"] [unique_id "acsvb3A7XrF3dLQ-OR4eSgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-31 01:55:22
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 21:55:14.246461 2026] [security2:error] [pid 9870:tid 9870] [client 172.70.251.96:12408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "redwingboot.com.cajunfriedturkey.com"] [uri "/.git/HEAD"] [unique_id "acspgrT20pY-5JOTvhCn2AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Vasile
2026-03-30 21:58:02
(3 months ago)
Shield Guard: Honeypot: /.env.old
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-30 16:07:17
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.251.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 30 12:07:04.086223 2026] [security2:error] [pid 19624:tid 19624] [client 172.70.251.96:13542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "numberseven.okwellbeing.com"] [uri "/.git/refs/heads/main"] [unique_id "acqfqHVEB-E_qPcJVREnlwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack