๐ฉ๐ช
Grossmann-Gruppe
2026-09-02 22:36:50
(1 week ago)
Plesk Fail2Ban: plesk-modsecurity
Hacking
Brute-Force
๐ณ๐ฑ
ipoac.nl
2026-08-31 15:57:36
(1 week ago)
-:443 172.71.123.170 - - [31/Aug/2026:17:57:35 +0200] - "GET /.git/HEAD HTTP/2.0" 404 2075 "-" "Mozi ...
show more
-:443 172.71.123.170 - - [31/Aug/2026:17:57:35 +0200] - "GET /.git/HEAD HTTP/2.0" 404 2075 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-31 06:19:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 02:19:20.208527 2026] [security2:error] [pid 22348:tid 22348] [client 172.71.123.170:13632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jboomergrenier.com"] [uri "/.git/HEAD"] [unique_id "apUc6BoElmTaMA2t4goOuQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-08-30 11:35:21
(1 week ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 19:18:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 15:18:18.503725 2026] [security2:error] [pid 30056:tid 30056] [client 172.71.123.170:12024] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ecoventionsusa.com.salsberggroup.com"] [uri "/.git/config"] [unique_id "apMwesS3zA2hhUgPhiZK3AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
instant
2026-08-29 19:04:14
(2 weeks ago)
29.08.2026 19:04:14 Git repository scan (/.git)
Hacking
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-08-29 12:43:49
(2 weeks ago)
malicious bot detected: violations="hit-honeypot"; user_agent="Mozilla/5.0 (Macintosh; Intel Mac OS ...
show more
malicious bot detected: violations="hit-honeypot"; user_agent="Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 16:14:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 12:13:59.419819 2026] [security2:error] [pid 12190:tid 12190] [client 172.71.123.170:11560] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hisimengineering.com"] [uri "/.git/config"] [unique_id "apGzxztcNGir7J0WYeryaQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-08-28 14:18:10
(2 weeks ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-26 21:40:35
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:40:26.866865 2026] [security2:error] [pid 31410:tid 31410] [client 172.71.123.170:9467] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.general.cloudex.link"] [uri "/.git/config"] [unique_id "ao9dSgRK2NtxIvQf0t9-twAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:14:15
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:14:11.118661 2026] [security2:error] [pid 31157:tid 31157] [client 172.71.123.170:12857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daveskountrykatering.com"] [uri "/.git/HEAD"] [unique_id "ao68c-qrz75dx6ajYoJSWwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:54:36
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:54:33.461298 2026] [security2:error] [pid 30171:tid 30171] [client 172.71.123.170:10083] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.azbrooks.com"] [uri "/.git/config"] [unique_id "ao1KOaeFOlNr0IRQMq-ntAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-08-24 22:05:52
(2 weeks ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 08:19:33
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 04:19:27.644911 2026] [security2:error] [pid 26952:tid 26952] [client 172.71.123.170:11217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "comobarbershop.com"] [uri "/.git/config"] [unique_id "aov-j4glo4FRMxHoOzwtlgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:52:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.170 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:52:42.927477 2026] [security2:error] [pid 24850:tid 24850] [client 172.71.123.170:11449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.richardhellis-sculptor.com"] [uri "/.git/HEAD"] [unique_id "aovqOlQbHmqN113t52XVNgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack