๐บ๐ธ
TPI-Abuse
2026-08-31 20:32:05
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 16:31:58.827146 2026] [security2:error] [pid 2449:tid 2449] [client 172.71.126.87:13517] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roselockecasting.com"] [uri "/.git/config"] [unique_id "apXkvhLlwQ4b_VEKS0KR5wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-31 06:33:58
(2 weeks ago)
cloudlinux2 fail2ban: 2026-08-31 08:28:55,614 fail2ban.filter [1605]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-31 08:28:55,614 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 103.69.246.197 - 2026-08-31 08:28:55cloudlinux2 fail2ban: 2026-08-31 08:28:56,079 fail2ban.filter [1605]: INFO [recidive] Found 103.69.246.197 - 2026-08-31 08:28:56cloudlinux2 fail2ban: 2026-08-31 08:28:52,888 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 172.71.126.87 - 2026-08-31 08:28:52cloudlinux2 fail2ban: 2026-08-31 08:28:56,072 fail2ban.actions [1605]: NOTICE [plesk-modsecurity] Ban 103.69.246.197cloudlinux2 fail2ban: 2026-08-31 08:28:52,899 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 172.71.126.86 - 2026-08-31 08:28:52cloudlinux2 fail2ban: 2026-08-31 08:29:34,107 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 122.183.57.202 - 2026-08-31 08:29:34cloudlinux2 fail2ban: 2026-08-31 08:30:09,493 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 34.155.118.107 - 2026-08-31 08:30:09cloudlinux2 fail2ban: 2
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-30 04:40:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 00:40:19.299869 2026] [security2:error] [pid 8850:tid 8850] [client 172.71.126.87:12557] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelgardner.com"] [uri "/.git/HEAD"] [unique_id "apO0MyLcgo3kQWpkCRajRQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 00:25:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 20:25:18.577230 2026] [security2:error] [pid 21341:tid 21341] [client 172.71.126.87:9797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title15.itaxcenter.com"] [uri "/.git/HEAD"] [unique_id "apN4bkIXOEOusPwVcmVTZAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 18:09:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 14:09:25.799684 2026] [security2:error] [pid 11161:tid 11161] [client 172.71.126.87:14180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flashbackvintageandthrift.georgetownca.com"] [uri "/.git/config"] [unique_id "apMgVSlrQKgN9x_OS_EFIAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 16:06:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 12:06:56.980793 2026] [security2:error] [pid 1212293:tid 1212300] [client 172.71.126.87:10128] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mcp.volcano-sa.com"] [uri "/.git/HEAD"] [unique_id "apMDoGtTUuPv31GmzJ0zLAAAAIE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 07:38:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:38:27.520192 2026] [security2:error] [pid 32169:tid 32322] [client 172.71.126.87:12770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mouserart.com"] [uri "/.git/config"] [unique_id "apKMcyopFh9qbe0mddzYvAAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-29 01:10:37
(2 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 13:03:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 09:03:38.409549 2026] [security2:error] [pid 11481:tid 11481] [client 172.71.126.87:14269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aupapierjaponais.com"] [uri "/.git/config"] [unique_id "apGHKsQ85fgRbFQ5it6XnQAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 05:12:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:12:35.296842 2026] [security2:error] [pid 6537:tid 6580] [client 172.71.126.87:13026] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cwpianolessons.com"] [uri "/.git/HEAD"] [unique_id "apEYw5Eq9V0mT4wJ0kmDWAAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 00:22:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 20:22:24.893813 2026] [security2:error] [pid 15202:tid 15202] [client 172.71.126.87:9412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.villamarehiltonhead.empoweruohio.org"] [uri "/.git/HEAD"] [unique_id "apDUwNqbTewAq_Mtsggz_wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:15:41
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:15:38.245806 2026] [security2:error] [pid 31827:tid 31827] [client 172.71.126.87:11562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.noscentpro.com"] [uri "/.git/config"] [unique_id "ao_H-sT95o9ydCwJGsScFgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 05:39:34
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 01:39:28.009215 2026] [security2:error] [pid 16337:tid 16337] [client 172.71.126.87:10316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.go.azultigre.com"] [uri "/.git/config"] [unique_id "aovZEFN3DT4b1zSmAytT_AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 06:26:32
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.126.87 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 02:26:24.885279 2026] [security2:error] [pid 19921:tid 19921] [client 172.71.126.87:11945] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ichi51e.net"] [uri "/.git/config"] [unique_id "aoqSkNfeSqgQAZFbxMpOXQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-22 22:03:56
(3 weeks ago)
Auto-ban: >3000 req/min op 2026-08-22
Web App Attack
SSH
Hacking