π«π·
Little Iguana
2026-09-12 09:47:23
(3 hours ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
π«π·
Little Iguana
2026-09-10 21:15:40
(1 day ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
π§πͺ
madeit
2026-09-06 20:23:10
(5 days ago)
Web App Attack
π¨π
4server
2026-08-30 17:10:19
(1 week ago)
[SunAug3019:10:14.9603452026][security2:error][pid3212404:tid3212669][client172.71.123.57:0]ModSecur ...
show more
[SunAug3019:10:14.9603452026][security2:error][pid3212404:tid3212669][client172.71.123.57:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"hostingsvizzera.ch\"][uri\"/.git/HEAD\"][unique_id\"apRj9hgfjE4t22XMlejNLwAAAYM\"]
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-30 10:22:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 06:22:49.344282 2026] [security2:error] [pid 19272:tid 19272] [client 172.71.123.57:11836] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "privateshoretour.com"] [uri "/.git/HEAD"] [unique_id "apQEeaN8T1olvoV5gpRBuQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-30 02:33:47
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 22:33:40.267975 2026] [security2:error] [pid 8729:tid 8729] [client 172.71.123.57:12223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pilgrimpastor.my1611.com"] [uri "/.git/config"] [unique_id "apOWhJVF33DqCMEXX0CV3wAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Little Iguana
2026-08-29 20:39:09
(1 week ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking
πΊπΈ
TPI-Abuse
2026-08-29 14:23:53
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 10:23:45.692310 2026] [security2:error] [pid 17875:tid 17875] [client 172.71.123.57:9790] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thepotteriesmesilla.com"] [uri "/.git/HEAD"] [unique_id "apLrcWAeExOfsyAXBtrNXwAAAHk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-29 05:35:46
(2 weeks ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 12:15:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 08:15:45.696961 2026] [security2:error] [pid 24694:tid 24694] [client 172.71.123.57:12607] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hygeiamedical.icu"] [uri "/.git/HEAD"] [unique_id "apF78f2DMMqy_KkXFjo97AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 10:38:08
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:38:01.716821 2026] [security2:error] [pid 4712:tid 4712] [client 172.71.123.57:14174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.robertanders.com"] [uri "/.git/config"] [unique_id "apFlCYWidPBMDHUkqoC5kQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
paulshipley.com.au
2026-08-27 23:56:13
(2 weeks ago)
[Fri Aug 28 09:56:12.026377 2026] [security2:error] [pid 579046] [client 172.71.123.57:11993] [clien ...
show more
[Fri Aug 28 09:56:12.026377 2026] [security2:error] [pid 579046] [client 172.71.123.57:11993] [client 172.71.123.57] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "balcomberetreat.com.au"] [uri "/.git/config"] [unique_id "apDOnLwm8CDbpWWax5YSrAAAABI"]
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 20:02:49
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 16:02:42.488829 2026] [security2:error] [pid 13369:tid 13369] [client 172.71.123.57:9329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.step1nutrition.com"] [uri "/.git/HEAD"] [unique_id "ao9GYogP0pF9VrxGIIKfvQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 07:09:11
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:09:05.819681 2026] [security2:error] [pid 18720:tid 18720] [client 172.71.123.57:9306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.pa-ksa.com"] [uri "/.git/HEAD"] [unique_id "ao0_kSSJ-Bohq-5W0OyoJQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 03:10:16
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.123.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 23:10:08.531709 2026] [security2:error] [pid 29059:tid 29059] [client 172.71.123.57:9519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.charmainecruz.com"] [uri "/.git/HEAD"] [unique_id "aou2EH-Ro4NSMr-8jkMltAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack