๐ฉ๐ช
altenglaner
2026-10-03 23:28:08
(1 day ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐จ๐ญ
backslash
2026-10-03 19:06:00
(1 day ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐ฆ๐บ
A.i.D.A.N.N
2026-10-02 15:06:40
(2 days ago)
A.i.D.A.N.N: Anomaly Detected - Signature match Web Service - Web vulnerability scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 04:48:11
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:48:07.021228 2026] [security2:error] [pid 7982:tid 7982] [client 172.71.119.124:9626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lopansri.com"] [uri "/.git/config"] [unique_id "aryUh41j6HPwHy9kYlE5DAAAAC4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 03:39:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 23:39:19.132527 2026] [security2:error] [pid 12490:tid 12490] [client 172.71.119.124:14061] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jackkerrart.com"] [uri "/.git/config"] [unique_id "aryEZyJVL18LaaM1NppZVQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 01:38:33
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 21:38:27.384590 2026] [security2:error] [pid 7348:tid 7371] [client 172.71.119.124:11053] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedebusinessconsultant.com"] [uri "/.git/config"] [unique_id "arxoEw-EL3QjDEJk7TlbzAAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 21:51:05
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 17:51:01.624268 2026] [security2:error] [pid 17606:tid 17606] [client 172.71.119.124:11314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hanabritgermanshepherds.puregoldmorgans.com"] [uri "/.git/config"] [unique_id "arrhRbSfxNpYl6XP4tZq4gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-27 22:01:12
(1 week ago)
Auto-ban: >3000 req/min op 2026-09-27
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-25 13:06:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 09:06:05.719051 2026] [security2:error] [pid 14874:tid 14874] [client 172.71.119.124:12720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dezignz.com"] [uri "/.git/config"] [unique_id "arZxvaCltyh5CUyVRDyyCAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 11:16:56
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.124 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 07:16:51.250198 2026] [security2:error] [pid 942:tid 942] [client 172.71.119.124:12426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "capitalinvestingguides.com"] [uri "/.git/config"] [unique_id "arZYI1V2L2kWl6Aar8xFnAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-24 20:44:19
(1 week ago)
Aggressive web scan
Web App Attack
๐ซ๐ท
dynamix
2026-09-21 19:40:05
(1 week ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-17 14:30:04
(2 weeks ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ซ๐ท
dynamix
2026-09-13 16:45:20
(3 weeks ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-10 08:31:05
(3 weeks ago)
172.71.119.124 - - [10/Sep/2026:08:31:03 +0000] "GET /.env.bak HTTP/2.0" 404 3578 "-" "Mozilla/5.0 ( ...
show more
172.71.119.124 - - [10/Sep/2026:08:31:03 +0000] "GET /.env.bak HTTP/2.0" 404 3578 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.156.119.35"
172.71.119.124 - - [10/Sep/2026:08:31:04 +0000] "GET /.env.save HTTP/2.0" 404 3578 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.156.119.35"
172.71.119.124 - - [10/Sep/2026:08:31:04 +0000] "GET /.env.sample HTTP/2.0" 404 3579 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.156.119.35"
172.71.119.124 - - [10/Sep/2026:08:31:05 +0000] "GET /.env.example HTTP/2.0" 404 3577 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" "34.156.119.35"
172.71.119.124 - - [10/Sep/2026:08:31:05 +0000] "GET /.env.prod HTTP/2.0" 404 3577 "-" "Mozilla/5.0 (Mac
...
show less
Port Scan
Brute-Force