Anonymous
2026-10-08 09:02:15
(1 day ago)
[Thu Oct 08 11:02:13.951354 2026] [authz_core:error] [pid 9608] [client 172.71.123.105:11597] AH0163 ...
show more
[Thu Oct 08 11:02:13.951354 2026] [authz_core:error] [pid 9608] [client 172.71.123.105:11597] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu Oct 08 11:02:13.978890 2026] [authz_core:error] [pid 9608] [client 172.71.123.105:11597] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Thu Oct 08 11:02:14.006486 2026] [authz_core:error] [pid 9608] [client 172.71.123.105:11597] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-10-04 21:59:51
(5 days ago)
Auto-ban: >3000 req/min op 2026-10-04
Web App Attack
SSH
Hacking
๐ฏ๐ต
S.O.B.A. Dev.
2026-10-01 20:31:01
(1 week ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-29 02:05:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 22:04:56.015569 2026] [security2:error] [pid 9495:tid 9495] [client 172.71.123.105:10072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "market.fynyx.com"] [uri "/.git/config"] [unique_id "arscyDNCDgAAa5_4CnyTqwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 18:39:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 14:39:06.900967 2026] [security2:error] [pid 19603:tid 19603] [client 172.71.123.105:9931] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.moaarmorer.com"] [uri "/.git/config"] [unique_id "arq0Sjtci3FAXYpN_UlNUQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-28 10:14:37
(1 week ago)
[Mon Sep 28 12:14:36.303832 2026] [authz_core:error] [pid 5574] [client 172.71.123.105:12981] AH0163 ...
show more
[Mon Sep 28 12:14:36.303832 2026] [authz_core:error] [pid 5574] [client 172.71.123.105:12981] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Sep 28 12:14:36.429057 2026] [authz_core:error] [pid 5574] [client 172.71.123.105:12981] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Sep 28 12:14:36.591250 2026] [authz_core:error] [pid 5574] [client 172.71.123.105:12981] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 09:56:21
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 05:56:13.560607 2026] [security2:error] [pid 13691:tid 13691] [client 172.71.123.105:13385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alsetsystems.com"] [uri "/.git/config"] [unique_id "arZFPbg_u0R0P60RULVsbQAAAGk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
oijon.net
2026-09-18 15:27:05
(3 weeks ago)
[Fri Sep 18 11:27:03.747464 2026] [php:error] [pid 1031321:tid 1031321] [client 172.71.123.105:9868] ...
show more
[Fri Sep 18 11:27:03.747464 2026] [php:error] [pid 1031321:tid 1031321] [client 172.71.123.105:9868] script '/var/www/thetacola/admin_phpinfo.php' not found or unable to stat
[Fri Sep 18 11:27:04.406798 2026] [php:error] [pid 1031316:tid 1031316] [client 172.71.123.105:9864] script '/var/www/thetacola/config.php' not found or unable to stat
[Fri Sep 18 11:27:04.857077 2026] [php:error] [pid 1031223:tid 1031223] [client 172.71.123.105:9860] script '/var/www/thetacola/info.php' not found or unable to stat
[Fri Sep 18 11:27:05.003008 2026] [php:error] [pid 1031320:tid 1031320] [client 172.71.123.105:9885] script '/var/www/thetacola/php-info.php' not found or unable to stat
[Fri Sep 18 11:27:05.023655 2026] [php:error] [pid 1031316:tid 1031316] [client 172.71.123.105:9864] script '/var/www/thetacola/php.php' not found or unable to stat
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 13:46:40
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 09:46:34.782792 2026] [security2:error] [pid 19288:tid 19288] [client 172.71.123.105:13914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.barnesandbrower.com"] [uri "/.git/HEAD"] [unique_id "apLiuuhMaHYPq2Hkn_w6CQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 05:35:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:35:00.683718 2026] [security2:error] [pid 16140:tid 16140] [client 172.71.123.105:13506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bairentang.org"] [uri "/.git/config"] [unique_id "apJvhHusbfBiiLRrDbv4FAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 20:50:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:50:48.290910 2026] [security2:error] [pid 8260:tid 8260] [client 172.71.123.105:9594] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.daruwala.net"] [uri "/.git/config"] [unique_id "apH0qB5UrN0PbPaH0lUyngAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 18:25:15
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 14:25:06.925787 2026] [security2:error] [pid 3209:tid 3209] [client 172.71.123.105:10141] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.leadek.com"] [uri "/.git/config"] [unique_id "apHSggMLVIj98uXVjSvKIAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-27 22:08:33
(1 month ago)
Web App Attack
๐จ๐ญ
filou812
2026-08-26 19:28:52
(1 month ago)
url tried is "/.git/HEAD"
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 18:48:59
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.105 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:48:54.573157 2026] [security2:error] [pid 15562:tid 15573] [client 172.71.123.105:9308] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.coloradospringsmardigras.aafm.us"] [uri "/.git/HEAD"] [unique_id "ao3jlkyHeBNmWau5UP0IfgAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack