Anonymous
2026-09-17 09:00:34
(3 days ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-16 11:05:50
(4 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
johnkarlhill
2026-09-11 07:24:30
(1 week ago)
WebKnight blocked malicious web request on johnkarlhill.com
Brute-Force
SSH
Anonymous
2026-09-07 23:28:33
(1 week ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
2026-09-06 10:39:37
(2 weeks ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:45:30
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:45:23.200487 2026] [security2:error] [pid 1042500:tid 1042565] [client 172.71.127.143:10456] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wwjnd.com"] [uri "/.git/config"] [unique_id "apdxowq9yP_2usCeErtMMAAAAgM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:49:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:49:31.263559 2026] [security2:error] [pid 31974:tid 31974] [client 172.71.127.143:11982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oceansgift.com"] [uri "/.git/config"] [unique_id "apbX610oCU0iQ7feXjPT7AAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 04:01:20
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 00:01:16.721050 2026] [security2:error] [pid 31503:tid 31503] [client 172.71.127.143:12727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lockyers.com"] [uri "/.git/config"] [unique_id "apZODJPD5HykuZtU-vNQcAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:10:29
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:10:23.513328 2026] [security2:error] [pid 27756:tid 27766] [client 172.71.127.143:12996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingdomofthefranks.com"] [uri "/.git/config"] [unique_id "apVTD59l06XQhRwJqXRAugAAAQc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 00:08:50
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 20:08:42.962033 2026] [security2:error] [pid 13461:tid 13461] [client 172.71.127.143:9432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sloaviation.com"] [uri "/.git/config"] [unique_id "apN0ikNUzkJbBt53HOZsvQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-29 07:34:42
(3 weeks ago)
GET /.git/HEAD HTTP/1.1
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 09:55:58
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:55:53.840916 2026] [security2:error] [pid 14394:tid 14394] [client 172.71.127.143:13342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.southernreader.com"] [uri "/.git/config"] [unique_id "apFbKWxZ9F6G9UWhUOZ5aQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-08-28 01:55:19
(3 weeks ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 13:13:20
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:13:13.456518 2026] [security2:error] [pid 10854:tid 10854] [client 172.71.127.143:12760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.smid.tv"] [uri "/.git/config"] [unique_id "apA36Y7mSgzyGHSLozQowAAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 23:47:41
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.143 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 19:47:34.687060 2026] [security2:error] [pid 12489:tid 12489] [client 172.71.127.143:12575] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.mandel.vc"] [uri "/.git/config"] [unique_id "ao97Fi3feYhlv8MHTKoMFQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack