π¦πΉ
nomzamo
2026-09-01 10:05:02
(10 hours ago)
Fail2Ban reported: nginx-noscript
Brute-Force
πΊπΈ
craudiovizai
2026-08-31 18:31:27
(1 day ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-30 23:47:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 19:47:17.979670 2026] [security2:error] [pid 2744:tid 2744] [client 172.71.131.28:11776] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "savannah-house.com"] [uri "/.git/HEAD"] [unique_id "apTBBZajc5stxMYiFYS_ogAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-30 14:36:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 10:36:28.585292 2026] [security2:error] [pid 24885:tid 24885] [client 172.71.131.28:9542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abchessboards.com"] [uri "/.git/HEAD"] [unique_id "apQ_7MYiOlNTpY9zELxLSAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
BlueWire Hosting
2026-08-30 10:07:36
(2 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 13:34:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 09:34:31.390345 2026] [security2:error] [pid 26687:tid 26687] [client 172.71.131.28:12269] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ismycorporationsafe.com"] [uri "/.git/config"] [unique_id "apLf54BBZVw_D19UY2UwcAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 23:05:39
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 19:05:31.094266 2026] [security2:error] [pid 5689:tid 5689] [client 172.71.131.28:10242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.surviquo.com"] [uri "/.git/HEAD"] [unique_id "apDCu48nnuVaTroCLkS6JQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 13:52:11
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 09:52:07.412829 2026] [security2:error] [pid 5342:tid 5342] [client 172.71.131.28:13486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.passwordresearch.com"] [uri "/.git/config"] [unique_id "apBBB9FEWqVakrP80NRe9AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 08:57:17
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:57:14.249385 2026] [security2:error] [pid 24841:tid 24841] [client 172.71.131.28:13683] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zentricity.com"] [uri "/.git/HEAD"] [unique_id "ao_76gIr718J8rucCNTXOAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 06:49:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 02:49:30.544779 2026] [security2:error] [pid 531:tid 531] [client 172.71.131.28:11632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.photoboutiqueamerica.com"] [uri "/.git/HEAD"] [unique_id "ao_d-hRq7wPABc24BuRUaAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 01:44:57
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:44:50.571090 2026] [security2:error] [pid 1512505:tid 1512550] [client 172.71.131.28:9652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.condomanagement360.com"] [uri "/.git/HEAD"] [unique_id "ao-WkhTc4rMtzfNxPbNEPgAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 15:20:27
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 11:20:22.839003 2026] [security2:error] [pid 17968:tid 18055] [client 172.71.131.28:11290] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.livetalkusa.com"] [uri "/.git/HEAD"] [unique_id "ao8ENnnG73Iww-3lHOuBLgAAAFY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 14:47:11
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 10:47:02.797804 2026] [security2:error] [pid 22875:tid 22875] [client 172.71.131.28:11508] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.aquatreat.net"] [uri "/.git/config"] [unique_id "ao78ZrFy8GKI_0w4auvlkAAAAE0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 16:32:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:32:38.856890 2026] [security2:error] [pid 4260:tid 4260] [client 172.71.131.28:11221] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.juca.com.mx"] [uri "/.git/config"] [unique_id "ao3DpuinPrbtY6iaSkmcQAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 04:40:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 00:40:03.556794 2026] [security2:error] [pid 32296:tid 32296] [client 172.71.131.28:13033] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.theledman.com"] [uri "/.git/config"] [unique_id "ao0co-JmRKVkkEvt4PCFEQAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack