๐ซ๐ท
chengkev
2026-09-21 16:31:56
(6 days ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/http-sensitive-files
Web App Attack
Hacking
Anonymous
2026-09-20 20:40:10
(1 week ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ง๐ช
madeit
2026-09-13 11:15:02
(2 weeks ago)
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-10 00:30:37
(2 weeks ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐ฌ๐ง
sandra361
2026-09-06 17:59:31
(3 weeks ago)
Port scan detected: 6 attempts across 1 port (443). | Evidence: REAPER_TARPIT: IN=enp1s0f0 SRC=172.7 ...
show more
Port scan detected: 6 attempts across 1 port (443). | Evidence: REAPER_TARPIT: IN=enp1s0f0 SRC=172.71.122.13 LEN=40 TOS=0x00 PREC=0x00 TTL=55 ID=64366 DF PROTO=TCP SPT=11267 DPT=443 WINDOW=65535 RES=0x00 ACK RST URGP=0
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-01 14:52:30
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 10:52:26.019614 2026] [security2:error] [pid 759327:tid 759351] [client 172.71.122.13:13798] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "metastrata.com"] [uri "/.git/config"] [unique_id "apbmqq5gAzJ3CVaCNq4vGwAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-31 21:59:29
(3 weeks ago)
Auto-ban: >3000 req/min op 2026-08-31
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-29 10:41:04
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 06:40:56.701936 2026] [security2:error] [pid 31049:tid 31049] [client 172.71.122.13:13515] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mariarozella.com"] [uri "/.git/config"] [unique_id "apK3OJXiQRKygaeoF4halQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:32:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:32:13.974884 2026] [security2:error] [pid 11300:tid 11300] [client 172.71.122.13:14103] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.archaiusmusic.com"] [uri "/.git/config"] [unique_id "apErbZKxHqh-NiM3LjAkJQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:23:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:23:24.517657 2026] [security2:error] [pid 29822:tid 29822] [client 172.71.122.13:12054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.modalsoftware.com"] [uri "/.git/config"] [unique_id "ao6GXHGJTK_us2FsXFkYYAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 23:15:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 19:15:10.355309 2026] [security2:error] [pid 2735773:tid 2735795] [client 172.71.122.13:12815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.frmoto.com"] [uri "/.git/HEAD"] [unique_id "ao4h_vxUPw5UXzcN9KNooQAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-25 09:53:36
(1 month ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.71.122.13 (FR/France/-): 2 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.71.122.13 (FR/France/-): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:09:27
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:09:19.034395 2026] [security2:error] [pid 27106:tid 27106] [client 172.71.122.13:9716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gdg1.com"] [uri "/.git/config"] [unique_id "ao0_n-2kGQ3TZyUm85HrcwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 04:49:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 00:49:46.006235 2026] [security2:error] [pid 25946:tid 25946] [client 172.71.122.13:14064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.lightedpath.com"] [uri "/.git/HEAD"] [unique_id "ao0e6mQ88_clSbEHUH_RwgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:30:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.13 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:30:03.226468 2026] [security2:error] [pid 31168:tid 31168] [client 172.71.122.13:12391] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bickleton.org"] [uri "/.git/config"] [unique_id "aovk689sNWzEeEdANmd-OQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack