๐จ๐ญ
4server
2026-08-28 11:03:23
(8 hours ago)
[FriAug2813:03:16.3225582026][security2:error][pid1102374:tid1102395][client172.71.118.230:0]ModSecu ...
show more
[FriAug2813:03:16.3225582026][security2:error][pid1102374:tid1102395][client172.71.118.230:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mail.shadowdrummer.com\"][uri\"/.git/HEAD\"][unique_id\"apFq9ECbMQ9MR5vlRBX6TAAAAU4\"]
show less
Hacking
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-28 07:45:32
(12 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:55:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:55:50.005721 2026] [security2:error] [pid 23370:tid 23370] [client 172.71.118.230:10648] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lawrencehale.net"] [uri "/.git/config"] [unique_id "ao8opt85RDU3_vkK8Eu6lAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-08-26 13:36:28
(2 days ago)
(nginxGITSCAN) nginx Git repository scanner detected from 172.71.118.230 (FR/France/รle-de-France/Pa ...
show more
(nginxGITSCAN) nginx Git repository scanner detected from 172.71.118.230 (FR/France/รle-de-France/Paris/-)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-26 03:59:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 23:59:30.567740 2026] [security2:error] [pid 9102:tid 9102] [client 172.71.118.230:13203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nrvoutdoors.com"] [uri "/.git/config"] [unique_id "ao5komCbr8BrhydA4GBJ3gAAAFw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 21:30:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:30:26.603847 2026] [security2:error] [pid 28769:tid 28769] [client 172.71.118.230:9820] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.createmaine.arsenaultartistmanagement.com"] [uri "/.git/config"] [unique_id "ao4JcmSbaksHCYq1Jzvv0AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 11:24:09
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 07:24:04.161435 2026] [security2:error] [pid 10762:tid 10762] [client 172.71.118.230:13852] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.xmlprotocol.com"] [uri "/.git/HEAD"] [unique_id "ao17VKusZQEoFM62oBH5yQAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 03:27:01
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 23:26:54.712411 2026] [security2:error] [pid 9158:tid 9158] [client 172.71.118.230:10311] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.donutlocations.com"] [uri "/.git/config"] [unique_id "ao0LftHFpyzyvIU0V-XoLgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 19:23:53
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 15:23:49.000035 2026] [security2:error] [pid 5104:tid 5104] [client 172.71.118.230:13738] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.theholographicseed.com"] [uri "/.git/HEAD"] [unique_id "aoyaRJvCDw_iv9om2sgrFQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:05:43
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:05:38.533263 2026] [security2:error] [pid 23170:tid 23170] [client 172.71.118.230:10571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "concentricsteel.com"] [uri "/.git/HEAD"] [unique_id "aoxdwp9Xz1FoaGGX1JgKdQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-24 10:38:39
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 13:45:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 09:45:21.773630 2026] [security2:error] [pid 24598:tid 24598] [client 172.71.118.230:11397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.chipnado.com"] [uri "/.git/config"] [unique_id "aor5cWbxJmpirlsdG40YiwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 05:03:29
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 01:03:23.929758 2026] [security2:error] [pid 21011:tid 21011] [client 172.71.118.230:12176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.healthpointphysicians.co"] [uri "/.git/config"] [unique_id "aop_Gwwt4YIHQ3ZUXjrmXgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 12:00:34
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 08:00:30.427213 2026] [security2:error] [pid 25684:tid 25684] [client 172.71.118.230:13699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.samuelpaley.com"] [uri "/.git/HEAD"] [unique_id "aomPXhASsoalWiFml-EDvgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 10:19:59
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.118.230 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 06:19:53.909475 2026] [security2:error] [pid 21646:tid 21646] [client 172.71.118.230:13358] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.cbrarauco.cl"] [uri "/.git/config"] [unique_id "aol3yXTDaNuVXKOVyhPSUAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack