๐ซ๐ท
dynamix
2026-10-08 00:34:41
(2 days ago)
Multiple WAF Violations
Web App Attack
๐ง๐ช
madeit
2026-10-01 16:54:00
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 03:09:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 23:09:08.899018 2026] [security2:error] [pid 3018:tid 3018] [client 172.71.126.86:10140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hotelausland.com"] [uri "/.git/config"] [unique_id "arx9VD5V3QFrauSAJIos5wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-27 09:43:30
(1 week ago)
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 24996 | TTL: 57 | LEN: 60 | TOS: 0x00 โข R ...
show more
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 24996 | TTL: 57 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-25 21:10:08
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 17:10:00.595252 2026] [security2:error] [pid 24345:tid 24345] [client 172.71.126.86:13964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "psdinnersready.com"] [uri "/.git/config"] [unique_id "arbjKBFQCYIrUCiINe9x3AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-24 00:10:42
(2 weeks ago)
Web App Attack
Anonymous
2026-09-17 12:20:10
(3 weeks ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-08-31 20:32:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 16:31:58.818128 2026] [security2:error] [pid 2465:tid 2465] [client 172.71.126.86:12274] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roselockecasting.com"] [uri "/.git/HEAD"] [unique_id "apXkvjG6HgfrPaOJUuVYegAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-31 06:33:58
(1 month ago)
cloudlinux2 fail2ban: 2026-08-31 08:28:55,614 fail2ban.filter [1605]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-31 08:28:55,614 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 103.69.246.197 - 2026-08-31 08:28:55cloudlinux2 fail2ban: 2026-08-31 08:28:56,079 fail2ban.filter [1605]: INFO [recidive] Found 103.69.246.197 - 2026-08-31 08:28:56cloudlinux2 fail2ban: 2026-08-31 08:28:52,888 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 172.71.126.87 - 2026-08-31 08:28:52cloudlinux2 fail2ban: 2026-08-31 08:28:56,072 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Ban 103.69.246.197cloudlinux2 fail2ban: 2026-08-31 08:28:52,899 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 172.71.126.86 - 2026-08-31 08:28:52cloudlinux2 fail2ban: 2026-08-31 08:29:34,107 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 122.183.57.202 - 2026-08-31 08:29:34cloudlinux2 fail2ban: 2026-08-31 08:30:09,493 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.155.118.107 - 2026-08-31 08:30:09cloudlinux2 fail2ban: 2
show less
Brute-Force
๐ง๐ช
madeit
2026-08-30 21:15:54
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 20:45:17
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 16:45:10.991345 2026] [security2:error] [pid 410:tid 410] [client 172.71.126.86:12714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brunerpamela.com"] [uri "/.git/config"] [unique_id "apSWVv-lr_V0zr-VjgtmWAAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 04:40:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 00:40:19.299865 2026] [security2:error] [pid 10391:tid 10391] [client 172.71.126.86:12951] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelgardner.com"] [uri "/.git/config"] [unique_id "apO0M-w1dkuCGHvImxZLhwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 00:25:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 20:25:18.576656 2026] [security2:error] [pid 21330:tid 21330] [client 172.71.126.86:11529] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title15.itaxcenter.com"] [uri "/.git/config"] [unique_id "apN4bvnZrxC_LS-TJ49H_AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 18:09:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 14:09:25.331392 2026] [security2:error] [pid 10463:tid 10463] [client 172.71.126.86:9884] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flashbackvintageandthrift.georgetownca.com"] [uri "/.git/HEAD"] [unique_id "apMgVSFZ3tBt2J0N7IOWEAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 16:06:59
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.86 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 12:06:56.980793 2026] [security2:error] [pid 1082168:tid 1082195] [client 172.71.126.86:9902] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mcp.volcano-sa.com"] [uri "/.git/config"] [unique_id "apMDoETqK1LAZYfc5EEpdwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack