๐บ๐ธ
TPI-Abuse
2026-08-31 10:32:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:32:20.303154 2026] [security2:error] [pid 30041:tid 30041] [client 172.71.131.145:13599] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "talesofhartwellhouse.com"] [uri "/.git/config"] [unique_id "apVYNK19NolA_flrF6-XyQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 23:12:51
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 19:12:43.280470 2026] [security2:error] [pid 18575:tid 18575] [client 172.71.131.145:10598] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "somehand.com"] [uri "/.git/config"] [unique_id "apS460Etd-zqkV0BNVtE7wAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 18:34:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 14:33:59.682519 2026] [security2:error] [pid 2666362:tid 2666384] [client 172.71.131.145:12963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theinfinitenow.com"] [uri "/.git/HEAD"] [unique_id "apR3l3qaE-_gNbrpwOSSjAAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 10:36:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 06:36:35.638525 2026] [security2:error] [pid 11431:tid 11463] [client 172.71.131.145:9302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kylight.com"] [uri "/.git/config"] [unique_id "apQHs_d6VIXi3mScaNIZqwAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 09:31:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 05:31:44.218881 2026] [security2:error] [pid 14079:tid 14079] [client 172.71.131.145:12454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sexycyborg.net"] [uri "/.git/HEAD"] [unique_id "apP4gNEBat_3G5aeFk123QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 23:51:58
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:51:52.379471 2026] [security2:error] [pid 9252:tid 9252] [client 172.71.131.145:13342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.springmeadowventures.com"] [uri "/.git/config"] [unique_id "apNwmGTwKELrxxfideJD8gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 14:05:57
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 10:05:50.425724 2026] [security2:error] [pid 15369:tid 15369] [client 172.71.131.145:13805] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sistema.tritec.com.gt"] [uri "/.git/config"] [unique_id "apLnPq2g1onvehGct6VH0wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-08-27 21:14:01
(5 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-27 12:22:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:22:27.049591 2026] [security2:error] [pid 13248:tid 13248] [client 172.71.131.145:13655] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.theamarals.com"] [uri "/.git/HEAD"] [unique_id "apAsA2e9KUOaxk5GLg9JhAAAADw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-08-27 07:19:43
(6 days ago)
ipoac.nl:443 172.71.131.145 - - [27/Aug/2026:09:19:41 +0200] ipoac.nl "GET /.git/HEAD HTTP/2.0" 404 ...
show more
ipoac.nl:443 172.71.131.145 - - [27/Aug/2026:09:19:41 +0200] ipoac.nl "GET /.git/HEAD HTTP/2.0" 404 2864 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Bad Web Bot
๐ฉ๐ช
4server
2026-08-27 06:30:45
(6 days ago)
[ThuAug2708:30:43.9265412026][security2:error][pid783478:tid783501][client172.71.131.145:0]ModSecuri ...
show more
[ThuAug2708:30:43.9265412026][security2:error][pid783478:tid783501][client172.71.131.145:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.solaristech.ch\"][uri\"/.git/config\"][unique_id\"ao_Zk3JTnPxTyDQGyyYNCwAAAAs\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-08-27 00:52:03
(6 days ago)
(nginxGITSCAN) nginx Git repository scanner detected from 172.71.131.145 (FR/France/รle-de-France/Pa ...
show more
(nginxGITSCAN) nginx Git repository scanner detected from 172.71.131.145 (FR/France/รle-de-France/Paris/-)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-26 10:11:52
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:11:46.502812 2026] [security2:error] [pid 1708:tid 1708] [client 172.71.131.145:9311] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vekk.org"] [uri "/.git/HEAD"] [unique_id "ao674oz9y9xX-nYuh3rgSQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:15:17
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:15:12.844137 2026] [security2:error] [pid 15083:tid 15083] [client 172.71.131.145:9281] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.fathereeinc.com"] [uri "/.git/config"] [unique_id "ao6gkJqRJHO9oGZYlf-sxgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:28:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:28:45.386314 2026] [security2:error] [pid 14571:tid 14571] [client 172.71.131.145:13617] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.maffiniandbearce.com"] [uri "/.git/config"] [unique_id "ao2mnUNE9c2pthjiXAT2uQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack