๐บ๐ธ
TPI-Abuse
2026-08-26 08:55:23
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:55:18.284272 2026] [security2:error] [pid 19371:tid 19371] [client 172.71.130.200:12426] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.myhomeflyer.com"] [uri "/.git/config"] [unique_id "ao6p9kQ7Lz215lRfnbF8wAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-25 05:54:57
(2 days ago)
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-24 21:45:03
(3 days ago)
[25/Aug/2026:00:45:03 +0300] -- 172.71.130.200 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[25/Aug/2026:00:45:03 +0300] -- 172.71.130.200 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 23:07:47
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 19:07:41.894707 2026] [security2:error] [pid 2661:tid 2661] [client 172.71.130.200:9818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.lightbender.net"] [uri "/.git/HEAD"] [unique_id "aot9PakUgPV889mZ857GagAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 10:45:50
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 06:45:41.831220 2026] [security2:error] [pid 11292:tid 11292] [client 172.71.130.200:10737] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fundaciondamashcc.org.ec"] [uri "/.git/HEAD"] [unique_id "aorPVWpxwYWoV1VOqaZjpAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 12:03:50
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 08:03:43.711747 2026] [security2:error] [pid 15321:tid 15321] [client 172.71.130.200:10396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.christmaspartynapkins.com"] [uri "/.git/config"] [unique_id "aomQH2n3qZZNJ_9VCDUUSwAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 04:49:34
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 00:49:28.377592 2026] [security2:error] [pid 12102:tid 12102] [client 172.71.130.200:13912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.aisoftwaretools.com"] [uri "/.git/HEAD"] [unique_id "aokqWOF60RMjdg1As5rhLwAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 17:11:33
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 13:11:23.495154 2026] [security2:error] [pid 18667:tid 18667] [client 172.71.130.200:13775] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jimpharris.com"] [uri "/.git/config"] [unique_id "aoiGuztGDHdfpUyahb79kgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 03:29:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 23:28:54.183719 2026] [security2:error] [pid 31947:tid 31947] [client 172.71.130.200:13066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.register-yacht-bahamas.com"] [uri "/.git/config"] [unique_id "aoZ0dku2Ve7sN_WnRlKB0gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 02:01:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:01:40.995522 2026] [security2:error] [pid 23994:tid 23994] [client 172.71.130.200:13822] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.theopinionatedowl.com"] [uri "/.git/HEAD"] [unique_id "aoUOhNcbrABU0uJyIfeMawAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 10:05:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 06:05:34.959932 2026] [security2:error] [pid 20618:tid 20618] [client 172.71.130.200:12800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nematoads.com"] [uri "/.git/HEAD"] [unique_id "aoQubuitgcyzWbz99WEsDQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:44:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:44:35.434565 2026] [security2:error] [pid 29413:tid 29413] [client 172.71.130.200:12492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.limeroc.com"] [uri "/.git/HEAD"] [unique_id "aoO5AzxalWXBxQYeDhRqzgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:38:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.130.200 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:38:21.513460 2026] [security2:error] [pid 30978:tid 30980] [client 172.71.130.200:12756] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.1shot.us"] [uri "/.git/config"] [unique_id "aoFo7SaG0mm0q8dHph15egAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ป๐ณ
cimee
2026-08-13 21:19:41
(2 weeks ago)
This IP accessed the path /@fs/.env.development, which is banned.
Bad Web Bot
Web App Attack
๐ฌ๐ง
OptimusGO
2026-07-16 01:30:17
(1 month ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-07-16 02:30:17 UTC
Log evidence:
172.71.130.200 - - [16/Jul/2026:02:30:14 +0100] "GET /gatsby-ssr%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
07/16/2026-02:30:14.899153 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 172.71.130.200:11626 -> 185.127.18.66:80
show less
Port Scan
Brute-Force