πΊπΈ
TPI-Abuse
2026-08-22 16:43:57
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 12:43:50.133822 2026] [security2:error] [pid 25372:tid 25372] [client 172.71.126.166:11939] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mskimberleesspace.com"] [uri "/.git/config"] [unique_id "aonRxgtP6TeRy2rCk8_OkgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 16:05:49
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 12:05:44.677941 2026] [security2:error] [pid 32604:tid 32604] [client 172.71.126.166:12186] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.clustershow.com"] [uri "/.git/HEAD"] [unique_id "aonI2Kx50POG6fEPGuTuIgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 14:21:58
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:21:54.683858 2026] [security2:error] [pid 16588:tid 16588] [client 172.71.126.166:13692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ainalea.com"] [uri "/.git/config"] [unique_id "aomwgrwJu5z8fruJvbzpoQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 13:30:34
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 09:30:30.229450 2026] [security2:error] [pid 1517:tid 1517] [client 172.71.126.166:13972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.halvaughan.com"] [uri "/.git/HEAD"] [unique_id "aomkdnd22kagcbhlIEhLbwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 05:13:07
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:13:02.613136 2026] [security2:error] [pid 2244:tid 2267] [client 172.71.126.166:11200] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.deyyoungart.com"] [uri "/.git/config"] [unique_id "aokv3gmOrY29rguvmgiv5wAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπ¦
URAN Publishing Service
2026-08-22 03:39:22
(23 hours ago)
[22/Aug/2026:06:39:22 +0300] -- 172.71.126.166 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[22/Aug/2026:06:39:22 +0300] -- 172.71.126.166 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
π©πͺ
hackthetime
2026-08-21 23:01:02
(1 day ago)
Tried to access .git/HEAD file (`/.git/HEAD`)
Web App Attack
π³π±
homeshowdomain.nl
2026-08-21 22:02:17
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-21
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-08-21 18:46:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:46:38.287024 2026] [security2:error] [pid 6359:tid 6359] [client 172.71.126.166:9382] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aykonak.com.qcyprus.com"] [uri "/.git/config"] [unique_id "aoidDiWFpy_iCdxUvdqL4AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-08-21 17:40:32
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
π©πͺ
ValtonTahiri
2026-08-21 08:10:34
(1 day ago)
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show more
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=172.71.126.166; proto=TCP; source_port=11901; target_port=8443; flags=SYN
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-08-20 22:15:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 18:14:53.500789 2026] [security2:error] [pid 23866:tid 23866] [client 172.71.126.166:13860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.godcanuseyou.com"] [uri "/.git/config"] [unique_id "aod8Xb2kXfak8iaPQ65oQgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-20 17:06:06
(2 days ago)
Trying to access config files
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-20 15:10:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 11:10:39.073577 2026] [security2:error] [pid 3400:tid 3400] [client 172.71.126.166:13808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.drivernine.com"] [uri "/.git/config"] [unique_id "aocY7_GPJAoWLNQd7BSH-wAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-20 14:00:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.166 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 10:00:30.474004 2026] [security2:error] [pid 10234:tid 10234] [client 172.71.126.166:11977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whmlradio.jazziientertainment.com"] [uri "/.git/config"] [unique_id "aocIfi1lk-platWV0u0RuQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack