๐บ๐ธ
TPI-Abuse
2026-09-30 16:28:30
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 12:28:27.400202 2026] [security2:error] [pid 21470:tid 21470] [client 172.71.118.142:10240] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sjjcox.com"] [uri "/.git/config"] [unique_id "ar04q_zDMjaOmrArMD5bnwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 01:30:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 21:30:14.767056 2026] [security2:error] [pid 27482:tid 27482] [client 172.71.118.142:12314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pictures.pittyvaich.com"] [uri "/.git/config"] [unique_id "arsUpsSl5r1X-G9Sz5DIbgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 10:50:55
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 06:50:50.413138 2026] [security2:error] [pid 10441:tid 10441] [client 172.71.118.142:10962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boblog111.com"] [uri "/.git/config"] [unique_id "arZSClCJ9Xvs_AY3f8266wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-17 14:37:28
(1 week ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ฉ๐ช
wiredalter
2026-09-09 14:24:42
(3 weeks ago)
Blocked by UFW on dVPS [8443/tcp]
Source Port: 14063
TTL: 55
Packet Length: 60
TOS: 0x00
Analyzed b ...
show more
Blocked by UFW on dVPS [8443/tcp]
Source Port: 14063
TTL: 55
Packet Length: 60
TOS: 0x00
Analyzed by https://ip.wiredalter.com
show less
Port Scan
Brute-Force
๐ฌ๐ง
openstrike.co.uk
2026-09-04 05:13:53
(3 weeks ago)
13 attacks on Wordpress URLs:
GET /cms/wp-includes/wlwmanifest.xml HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 21:46:59
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 17:46:52.073690 2026] [security2:error] [pid 22497:tid 22497] [client 172.71.118.142:12777] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "denvercitymotorparts.com"] [uri "/.git/config"] [unique_id "apdHzAJx-6LkOIeyQD1qUAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 17:25:20
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 13:25:16.620125 2026] [security2:error] [pid 1791:tid 1804] [client 172.71.118.142:9611] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "royaleconomicsacademy.com"] [uri "/.git/HEAD"] [unique_id "apcKfIjpw_Vr_KElH69VlgAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 19:07:58
(1 month ago)
(mod_security) mod_security (id:949110) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 15:07:50.620730 2026] [security2:error] [pid 15943:tid 15943] [client 172.71.118.142:9314] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "ghmuganda.com"] [uri "/.git/HEAD"] [unique_id "apR_htsSLGuYC1oQ5lLkOgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-29 21:34:53
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 12:35:47
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 08:35:40.965544 2026] [security2:error] [pid 18654:tid 18654] [client 172.71.118.142:9604] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.kayelynn.com"] [uri "/.git/HEAD"] [unique_id "apLSHPlZEmSmRYRrHZ87SwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 11:51:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 07:51:03.862016 2026] [security2:error] [pid 31305:tid 31305] [client 172.71.118.142:12789] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.theartbrush.com"] [uri "/.git/HEAD"] [unique_id "apLHpz5hSlFdCgE27NsI-gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 21:42:53
(1 month ago)
172.71.118.142 - - [28/Aug/2026:23:42:43 +0200] "GET /.git/config HTTP/2.0" 404 167 "-" "Mozilla/5.0 ...
show more
172.71.118.142 - - [28/Aug/2026:23:42:43 +0200] "GET /.git/config HTTP/2.0" 404 167 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 04:15:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:15:03.277126 2026] [security2:error] [pid 6740:tid 6740] [client 172.71.118.142:12346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mfleetservice.com"] [uri "/.git/config"] [unique_id "ao-5x_SyyYMZMoUC9G-BRgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-27 01:01:15
(1 month ago)
Web App Attack