π―π΅
S.O.B.A. Dev.
2026-08-29 14:17:27
(14 hours ago)
Persistent port scanning or vulnerability scanning
Port Scan
πΊπΈ
TPI-Abuse
2026-08-29 07:38:36
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:38:28.611680 2026] [security2:error] [pid 11674:tid 11674] [client 172.71.127.33:13332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sparler.com"] [uri "/.git/HEAD"] [unique_id "apKMdKpI0KAYYM0GCBix8gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-28 14:37:18
(1 day ago)
Web App Attack
π¬π§
myintarweb
2026-08-28 10:14:25
(1 day ago)
172.71.127.33 - - [28/Aug/2026:11:14:23 +0100] 443 "GET /.git/HEAD HTTP/2.0" 404 25447 "-" "Mozilla/ ...
show more
172.71.127.33 - - [28/Aug/2026:11:14:23 +0100] 443 "GET /.git/HEAD HTTP/2.0" 404 25447 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 06:06:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:06:29.846394 2026] [security2:error] [pid 11995:tid 11995] [client 172.71.127.33:13078] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.scsurfside.net"] [uri "/.git/HEAD"] [unique_id "apElZcKOBg9kWP1Zl-ehbgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 02:29:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:29:35.480419 2026] [security2:error] [pid 30325:tid 30325] [client 172.71.127.33:14272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.missingdigit.com"] [uri "/.git/config"] [unique_id "apDyj3ZrcVnAWKPKAWkrWgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 01:14:11
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:14:06.612337 2026] [security2:error] [pid 1264:tid 1264] [client 172.71.127.33:9403] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.15cherryavenue.com"] [uri "/.git/config"] [unique_id "ao-PXk-7B_uWKSUHLmPfYwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 15:07:03
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 11:06:58.073415 2026] [security2:error] [pid 12480:tid 12480] [client 172.71.127.33:13438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.marcosbarraza.net"] [uri "/.git/config"] [unique_id "ao8BEkZVu4Jj0lqnrC69LgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π―π΅
Watch40x
2026-08-26 06:55:09
(3 days ago)
Automated report from Watch40x security system. Web application probing detected.
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 16:26:42
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:26:35.643240 2026] [security2:error] [pid 16273:tid 16273] [client 172.71.127.33:11519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.andysharp.com"] [uri "/.git/HEAD"] [unique_id "ao3CO1mu0f4XzwpVwdBr1AAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 00:53:06
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 20:52:58.817097 2026] [security2:error] [pid 15234:tid 15234] [client 172.71.127.33:10848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.academicaic.com"] [uri "/.git/config"] [unique_id "aoznau2CtWPLCuU_6Hl8VQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 23:03:56
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 19:03:48.416507 2026] [security2:error] [pid 29678:tid 29678] [client 172.71.127.33:12359] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.alexsource.com"] [uri "/.git/HEAD"] [unique_id "aozN1M7_ihfRbeQ31mMMhQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-08-24 22:01:23
(5 days ago)
Auto-ban: >3000 req/min op 2026-08-24
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-08-23 02:47:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 22:47:26.737201 2026] [security2:error] [pid 24956:tid 24956] [client 172.71.127.33:12657] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.nathsharmaandcompany.com"] [uri "/.git/config"] [unique_id "aopfPh3kq64NBDUbI4jnewAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 20:23:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.127.33 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 16:23:17.285011 2026] [security2:error] [pid 16227:tid 16227] [client 172.71.127.33:13926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aics.alitcogroup.com"] [uri "/.git/config"] [unique_id "aooFNbYUyEEwKGhawcKzHQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack