Anonymous
2026-09-22 02:00:13
(2 days ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
Anonymous
2026-09-21 21:16:16
(2 days ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ฉ๐ช
thesimonmanuel
2026-09-18 06:51:17
(5 days ago)
172.71.119.55 - - [18/Sep/2026:12:21:16 +0530] "GET /.git/config HTTP/2.0" 404 132 "-" "Mozilla/5.0 ...
show more
172.71.119.55 - - [18/Sep/2026:12:21:16 +0530] "GET /.git/config HTTP/2.0" 404 132 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/127.0 Safari/537.36" "2a06:98c0:3600::103"
show less
Web App Attack
๐ซ๐ท
dynamix
2026-09-17 22:32:59
(6 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-09-17 20:13:09
(6 days ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ฎ๐ฉ
Diskominfo Lumajang
2026-09-11 17:55:03
(1 week ago)
Security Event Detected by SOC Diskominfo Lumajang: event=alert, hits=26
Brute-Force
๐ง๐ท
chronos
2026-09-08 05:44:13
(2 weeks ago)
2026-09-08 02:35:25 UTC-3||Unauthorized connection attempt detected for port scanning
Port Scan
๐ฉ๐ช
Grossmann-Gruppe
2026-09-02 22:36:33
(3 weeks ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-31 20:54:34
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 16:54:27.668930 2026] [security2:error] [pid 9297:tid 9350] [client 172.71.119.55:13749] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aplinet.com"] [uri "/.git/HEAD"] [unique_id "apXqA4JpHo3M7Vb04yWUewAAAY8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 00:48:42
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 20:48:39.619077 2026] [security2:error] [pid 106473:tid 106498] [client 172.71.119.55:10151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oldramona.com"] [uri "/.git/HEAD"] [unique_id "apIsZwT0nhezPdooEOmbVAAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 18:58:16
(3 weeks ago)
172.71.119.55 - - [28/Aug/2026:18:58:15 +0000] "GET /.git/config HTTP/1.1" 404 51505 "-" "Mozilla/5. ...
show more
172.71.119.55 - - [28/Aug/2026:18:58:15 +0000] "GET /.git/config HTTP/1.1" 404 51505 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:23:47
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:23:39.928758 2026] [security2:error] [pid 21815:tid 21815] [client 172.71.119.55:13959] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lahamradio.com"] [uri "/.git/config"] [unique_id "ao_X6xDKVD5bkV39lb3w0AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 04:47:30
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:47:25.985268 2026] [security2:error] [pid 31740:tid 31740] [client 172.71.119.55:13212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tijuana-bibles.com"] [uri "/.git/HEAD"] [unique_id "ao_BXXk-RuHjPjvJGm5J8QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:21:19
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:21:14.333920 2026] [security2:error] [pid 917:tid 917] [client 172.71.119.55:13309] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.accordionclub.org"] [uri "/.git/HEAD"] [unique_id "ao9YyuET43Ft5ttGn4xeDwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 20:24:09
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.119.55 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 16:24:04.101014 2026] [security2:error] [pid 23329:tid 23329] [client 172.71.119.55:11597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.astariafilms.com"] [uri "/.git/config"] [unique_id "ao9LZDWtOQdTtpD50epsBAAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack