๐บ๐ธ
TPI-Abuse
2026-10-09 16:31:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 12:31:29.570850 2026] [security2:error] [pid 10568:tid 10568] [client 172.71.118.133:13222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tiffanyshouses.com"] [uri "/.git/config"] [unique_id "askW4e3gv2msHxgofDfLXAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 05:27:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 01:27:28.943075 2026] [security2:error] [pid 31621:tid 31758] [client 172.71.118.133:9517] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "andeanbouquet.com"] [uri "/.git/config"] [unique_id "ash7QJjJp9OUtpvr5xw8XAAAAlY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 18:20:08
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 14:20:04.895841 2026] [security2:error] [pid 821:tid 850] [client 172.71.118.133:11045] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sherwoo1.aafm.us"] [uri "/.git/config"] [unique_id "asfe1K5SOh6hNU7yHdTJbQAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 02:15:38
(2 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 00:28:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 20:27:52.733315 2026] [security2:error] [pid 13922:tid 13922] [client 172.71.118.133:10172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "couturebikini.com"] [uri "/.git/config"] [unique_id "arxXiD2R0gVFEm02jhvLNQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
Webmestre
2026-09-29 12:23:00
(1 week ago)
Massive attempt to access non-existent PHP and WordPress pages with different IP /.env /wp-admin/
T ...
show more
Massive attempt to access non-existent PHP and WordPress pages with different IP /.env /wp-admin/
The vast majority of attack today come from Cloudflare Reverse Prox Whitelisted netblocks - Cloudflare, Inc., Data Center/Web Hosting/Transit (ASN AS13335). Paris, Ile-de-France (France)
show less
Bad Web Bot
Web App Attack
Hacking
๐ซ๐ท
pm33
2026-09-27 07:47:08
(1 week ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐ซ๐ท
dynamix
2026-09-24 04:07:04
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
reznekcs
2026-09-22 05:01:39
(2 weeks ago)
Blocked by UFW firewall
Brute-Force
๐ซ๐ท
LoneRider
2026-09-13 13:43:07
(3 weeks ago)
[13/Sep/2026:15:43:07.442930 +0200] aqaoa-9GONNWeffWMDtFXQAAAAQ 172.71.118.133 51124 127.0.0.1 7081
...
show more
[13/Sep/2026:15:43:07.442930 +0200] aqaoa-9GONNWeffWMDtFXQAAAAQ 172.71.118.133 51124 127.0.0.1 7081
[13/Sep/2026:15:43:07.506739 +0200] aqaoaxxCr_U_1oaPNOcOxAAAAAM 172.71.118.133 51138 127.0.0.1 7081
[13/Sep/2026:15:43:07.531589 +0200] aqaoa_ucMIeMbo6L2joGcQAAABA 172.71.118.133 51150 127.0.0.1 7081
...
show less
Hacking
๐ซ๐ท
LoneRider
2026-09-06 00:50:18
(1 month ago)
[06/Sep/2026:02:50:17.539685 +0200] apy4ydrMmfCj-oi6y6SFYAAAAAY 172.71.118.133 52174 127.0.0.1 7081
...
show more
[06/Sep/2026:02:50:17.539685 +0200] apy4ydrMmfCj-oi6y6SFYAAAAAY 172.71.118.133 52174 127.0.0.1 7081
[06/Sep/2026:02:50:17.739799 +0200] apy4yZHfoYu-C-pXtv63RgAAAAM 172.71.118.133 52188 127.0.0.1 7081
[06/Sep/2026:02:50:17.936452 +0200] apy4yVqgqQkKN59kBH5q_AAAAAI 172.71.118.133 52190 127.0.0.1 7081
...
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 14:57:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 10:57:31.954055 2026] [security2:error] [pid 21827:tid 21827] [client 172.71.118.133:14000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strawusa.com"] [uri "/.git/config"] [unique_id "apWWW18QGGLkhp0TsZtS5QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 09:40:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 05:40:16.982276 2026] [security2:error] [pid 6945:tid 6945] [client 172.71.118.133:12002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "freehotdog.org"] [uri "/.git/HEAD"] [unique_id "apVMAN_-La-Wah9AtfBFrgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 01:24:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 21:23:55.215845 2026] [security2:error] [pid 25614:tid 25614] [client 172.71.118.133:11640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.xmlprotocol.com"] [uri "/.git/HEAD"] [unique_id "apOGK79XwdtQSzLF3_H46AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-30 00:07:08
(1 month ago)
[SunAug3002:07:02.2794842026][security2:error][pid4068815:tid4068942][client172.71.118.133:0]ModSecu ...
show more
[SunAug3002:07:02.2794842026][security2:error][pid4068815:tid4068942][client172.71.118.133:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.cpu-services.ch\"][uri\"/.git/config\"][unique_id\"apN0Jn1zbm2eEJ9sDJzm0wAAAVM\"]
show less
Hacking
Web App Attack