Anonymous
2026-10-09 04:32:05
(3 hours ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ซ๐ท
dynamix
2026-10-09 03:58:41
(3 hours ago)
Multiple WAF Violations
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-10-09 01:45:27
(5 hours ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-10-05 21:13:40
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 17:13:36.660510 2026] [security2:error] [pid 9849:tid 9849] [client 172.71.122.137:13561] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rota.oxfordgliding.com"] [uri "/.git/config"] [unique_id "asQTAETl6Z5d59KihnMfzQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฐ
sbk97 (https://sayor.net)
2026-10-04 07:42:20
(4 days ago)
SAYOR honeypot: observed attack /xmlrpc.php
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-29 00:12:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 20:12:32.850195 2026] [security2:error] [pid 28800:tid 28800] [client 172.71.122.137:12174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.comphelpusa.com"] [uri "/.git/config"] [unique_id "arsCcOog6vTxJL0agJFsrQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-18 09:50:02
(2 weeks ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
Anonymous
2026-09-13 16:40:42
(3 weeks ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-08 22:02:09
(1 month ago)
Auto-ban: >3000 req/min op 2026-09-08
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 13:26:11
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:26:02.820057 2026] [security2:error] [pid 14873:tid 14904] [client 172.71.122.137:11430] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sea2er.com"] [uri "/.git/config"] [unique_id "apbSalzvDUNCzDfm3coxxwAAANg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 22:44:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 18:44:49.500010 2026] [security2:error] [pid 20131:tid 20131] [client 172.71.122.137:14042] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.alkahf.xyz"] [uri "/.git/HEAD"] [unique_id "apNg4Zrgmy1NFLu-v0qjmwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:39:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:39:02.159666 2026] [security2:error] [pid 21609:tid 21609] [client 172.71.122.137:11461] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.offbeatcompassion.com"] [uri "/.git/config"] [unique_id "apIcFhZr5rSNdTYHa1V3UQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-28 09:42:58
(1 month ago)
[FriAug2811:42:53.8666632026][security2:error][pid831802:tid832268][client172.71.122.137:0]ModSecuri ...
show more
[FriAug2811:42:53.8666632026][security2:error][pid831802:tid832268][client172.71.122.137:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"hosting-domain-swiss-com.ticino-hosting.ch\"][uri\"/.git/HEAD\"][unique_id\"apFYHWRgA3cTFr8qTib-gQAAAQg\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 07:57:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.137 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:56:54.701251 2026] [security2:error] [pid 12582:tid 12582] [client 172.71.122.137:11835] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.keystonestandard.com"] [uri "/.git/HEAD"] [unique_id "apE_RlsvfEHLgjMVR9csUgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-27 14:06:25
(1 month ago)
Web App Attack