๐ซ๐ท
dynamix
2026-09-16 13:12:01
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-02 00:20:23
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 20:20:15.756599 2026] [security2:error] [pid 15675:tid 15675] [client 172.71.131.123:13750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingstoneproperties.com"] [uri "/.git/HEAD"] [unique_id "apdrv96BHhRJJs8fItGnQgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-30 13:45:12
(2 weeks ago)
[Sun Aug 30 23:45:11.430045 2026] [security2:error] [pid 924003] [client 172.71.131.123:13569] [clie ...
show more
[Sun Aug 30 23:45:11.430045 2026] [security2:error] [pid 924003] [client 172.71.131.123:13569] [client 172.71.131.123] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "winesbydesign.com.au"] [uri "/.git/config"] [unique_id "apQz577n2UY9ZnN87FZOWgAAAAA"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 10:29:29
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 06:29:26.208730 2026] [security2:error] [pid 1529266:tid 1529296] [client 172.71.131.123:9368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "n30ew.com"] [uri "/.git/config"] [unique_id "apQGBo286szWfQOiP2J47gAAAU8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 17:01:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 13:01:08.587030 2026] [security2:error] [pid 19974:tid 19974] [client 172.71.131.123:9867] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.tankercontrol.com"] [uri "/.git/config"] [unique_id "apMQVDNKpRtjb2VvsBxuAAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-28 21:57:28
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-08-28 07:33:39
(2 weeks ago)
172.71.131.123 - - [28/Aug/2026:01:33:39 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5. ...
show more
172.71.131.123 - - [28/Aug/2026:01:33:39 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:33:35
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:33:27.264496 2026] [security2:error] [pid 2578:tid 2578] [client 172.71.131.123:12764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.csme-eprr.com"] [uri "/.git/HEAD"] [unique_id "apAghx4_xeU6FmR7eNPVMgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:12:17
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:12:10.641167 2026] [security2:error] [pid 19671:tid 19671] [client 172.71.131.123:10841] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.francisautodetailing.com"] [uri "/.git/HEAD"] [unique_id "ao__avN4kwPUSfTHBNMb6wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 06:58:07
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:58:01.833879 2026] [security2:error] [pid 15934:tid 15934] [client 172.71.131.123:9741] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.kaldaragroup.com"] [uri "/.git/HEAD"] [unique_id "ao_f-aWdRPEkPQ6XPK3irwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:20:50
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:20:45.992956 2026] [security2:error] [pid 25907:tid 25907] [client 172.71.131.123:11250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.couturebikini.com"] [uri "/.git/HEAD"] [unique_id "ao9YrSYYLLlnuLj7Ogiy2AAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 23:25:43
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 19:25:37.408496 2026] [security2:error] [pid 9814:tid 9814] [client 172.71.131.123:13699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abramczuk.me"] [uri "/.git/config"] [unique_id "ao4kcUi2-o2ZkgOmaPkkuQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:03:29
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:03:20.654159 2026] [security2:error] [pid 3127:tid 3127] [client 172.71.131.123:13449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.tci.land"] [uri "/.git/HEAD"] [unique_id "ao4RKCgUencWaP6ez5pHAQAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 20:33:45
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 16:33:37.223310 2026] [security2:error] [pid 16808:tid 16808] [client 172.71.131.123:13703] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.the-practical-pionus.com"] [uri "/.git/config"] [unique_id "ao38IRJOz4WIq0EsIPYZwQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:37:16
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:37:08.964351 2026] [security2:error] [pid 18822:tid 18822] [client 172.71.131.123:14223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bkspeck.com"] [uri "/.git/config"] [unique_id "ao1GJLbrnZkvLiVYUZsHyQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack