๐บ๐ธ
TPI-Abuse
2026-08-22 21:08:33
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 17:08:29.549439 2026] [security2:error] [pid 16595:tid 16595] [client 172.71.126.40:10280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jimvassilakos.com"] [uri "/.git/config"] [unique_id "aooPzfc75Vl5qizm_ge3YwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 19:59:33
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 15:59:27.985017 2026] [security2:error] [pid 11481:tid 11481] [client 172.71.126.40:12515] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.camasmarket.com"] [uri "/.git/HEAD"] [unique_id "aon_n203XV4BEEG50-6RGgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 18:24:43
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 14:24:40.087192 2026] [security2:error] [pid 13289:tid 13289] [client 172.71.126.40:11188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.burnshieldmena.com"] [uri "/.git/config"] [unique_id "aonpaA9J5oSjJWvXNqF8oAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-22 09:42:29
(1 day ago)
[SatAug2211:42:22.9158302026][security2:error][pid2304107:tid2304210][client172.71.126.40:0]ModSecur ...
show more
[SatAug2211:42:22.9158302026][security2:error][pid2304107:tid2304210][client172.71.126.40:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"robertselitrenny.ch\"][uri\"/.git/config\"][unique_id\"aolu_uAC1njWmCnmBdNHfAAAAQY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 02:07:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 22:07:26.884868 2026] [security2:error] [pid 13037:tid 13037] [client 172.71.126.40:9709] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.coconut-homes.com"] [uri "/.git/HEAD"] [unique_id "aokEXnbHZT4GIGrOy3wvmAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 20:33:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 16:33:26.834497 2026] [security2:error] [pid 13068:tid 13068] [client 172.71.126.40:10203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "b2c-llc.anthonyanimalclinic.net"] [uri "/.git/config"] [unique_id "aoi2Fr_tqmJ6b1G-yiY4ewAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 19:14:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 15:14:07.673835 2026] [security2:error] [pid 14297:tid 14297] [client 172.71.126.40:14001] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.britanniapilates.com"] [uri "/.git/config"] [unique_id "aoijf_5j6d0UZRtdZHa5awAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:52:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:52:08.924431 2026] [security2:error] [pid 23118:tid 23118] [client 172.71.126.40:10763] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.majersigns.com"] [uri "/.git/config"] [unique_id "aoieWKs8aUZ3rfvjF7bncAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 10:12:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 06:11:59.559797 2026] [security2:error] [pid 15572:tid 15572] [client 172.71.126.40:12455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.thewanderingwoods.quest"] [uri "/.git/HEAD"] [unique_id "aogkb9unsRF9xQO_xD9O7AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-08-21 06:30:17
(2 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/HEAD. Blocked at ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/HEAD. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-20 11:22:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 07:21:53.187150 2026] [security2:error] [pid 29215:tid 29215] [client 172.71.126.40:13086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bookofraphael.com"] [uri "/.git/HEAD"] [unique_id "aobjUXMn1Qf3DlYQ1n501wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:15:51
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:15:45.506579 2026] [security2:error] [pid 32105:tid 32105] [client 172.71.126.40:14183] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jchiggins.com"] [uri "/.git/config"] [unique_id "aoZHMXhJdWYjlufbQMC6wwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-08-19 12:28:37
(4 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-19 02:57:45
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:57:37.951524 2026] [security2:error] [pid 5586:tid 5586] [client 172.71.126.40:11602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.oldmaninthepeanut.com"] [uri "/.git/config"] [unique_id "aoUboTeaoVfeSxA9x-4jtAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 00:01:22
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.40 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 20:01:15.919019 2026] [security2:error] [pid 21179:tid 21179] [client 172.71.126.40:13448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.jimsvet.com"] [uri "/.git/config"] [unique_id "aoTyS3cJ7p4Z_OqlZHDD4gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack