πΊπΈ
TPI-Abuse
2026-08-25 19:50:37
(2 hours ago)
(mod_security) mod_security (id:949110) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 15:50:32.666116 2026] [security2:error] [pid 23202:tid 23202] [client 172.71.122.214:9566] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.exorex.com"] [uri "/.git/HEAD"] [unique_id "ao3yCEfekkNTHcqaINr9EwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 13:23:33
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:23:26.670246 2026] [security2:error] [pid 16025:tid 16025] [client 172.71.122.214:9940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "drgas.scottwithers.xyz"] [uri "/.git/HEAD"] [unique_id "ao2XTgy-RMMRuf4lk0WzwQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 12:51:47
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 08:51:41.870541 2026] [security2:error] [pid 7208:tid 7208] [client 172.71.122.214:9383] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.inspiringindividualindustry.ficklepassionproductions.com"] [uri "/.git/HEAD"] [unique_id "ao2P3YAoPkDCPMGyaslfywAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 19:24:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 15:24:42.145016 2026] [security2:error] [pid 25735:tid 25735] [client 172.71.122.214:9888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ik3co.com"] [uri "/.git/HEAD"] [unique_id "aoyaeoVBcDx4KOZ63trRVgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 07:25:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 03:25:19.423152 2026] [security2:error] [pid 17191:tid 17191] [client 172.71.122.214:9774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nashes.net"] [uri "/.git/HEAD"] [unique_id "aovx3-oGLZUyooDIMxhLxAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-23 21:59:23
(2 days ago)
Auto-ban: >3000 req/min op 2026-08-23
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-08-23 14:37:53
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 10:37:46.740468 2026] [security2:error] [pid 28658:tid 28658] [client 172.71.122.214:9850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.buggyshop.org"] [uri "/.git/config"] [unique_id "aosFuh1O32KNGd1307ORAgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 16:32:17
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 12:32:12.247520 2026] [security2:error] [pid 24299:tid 24299] [client 172.71.122.214:11628] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.muddypuddy.com"] [uri "/.git/HEAD"] [unique_id "aoh9jHKPAvX4J9Bnv08HvgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 11:24:06
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 07:24:00.734929 2026] [security2:error] [pid 17321:tid 17321] [client 172.71.122.214:11867] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.healthydatasystems.com"] [uri "/.git/config"] [unique_id "aog1UKptRZpPDlZcwxIbSQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-20 09:56:53
(5 days ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 01:12:55
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 21:12:47.770402 2026] [security2:error] [pid 28390:tid 28390] [client 172.71.122.214:14000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.vittariabeauty.com"] [uri "/.git/config"] [unique_id "aoUDD9kVgKZIjdOnP-NWIwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-18 13:02:41
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 09:02:35.182802 2026] [security2:error] [pid 17582:tid 17582] [client 172.71.122.214:14160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.damgoodit.com"] [uri "/.git/HEAD"] [unique_id "aoRX60tw0JfNq7KqBIfG1gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-18 12:08:59
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 08:08:52.524367 2026] [security2:error] [pid 1320:tid 1320] [client 172.71.122.214:10891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hjaltihjalmarsson.com"] [uri "/.git/config"] [unique_id "aoRLVBwR-t4Xofs94eGLgQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-08 00:58:19
(2 weeks ago)
2026-08-08T02:58:16.728952+02:00 nimbus sshd[26728]: pam_unix(sshd:auth): authentication failure; lo ...
show more
2026-08-08T02:58:16.728952+02:00 nimbus sshd[26728]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.71.122.214 user=root
2026-08-08T02:58:18.822347+02:00 nimbus sshd[26728]: Failed password for root from 172.71.122.214 port 55418 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-08-05 02:22:36
(2 weeks ago)
2026-08-05T04:22:34.462912+02:00 nimbus sshd[171515]: pam_unix(sshd:auth): authentication failure; l ...
show more
2026-08-05T04:22:34.462912+02:00 nimbus sshd[171515]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.71.122.214 user=root
2026-08-05T04:22:36.283728+02:00 nimbus sshd[171515]: Failed password for root from 172.71.122.214 port 52703 ssh2
...
show less
Brute-Force
SSH