๐บ๐ธ
TPI-Abuse
2026-08-29 22:51:36
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 18:51:33.542725 2026] [security2:error] [pid 2104:tid 2104] [client 172.71.131.37:14031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.horizonsoundchicago.com"] [uri "/.git/HEAD"] [unique_id "apNideJPYIhCVWylD2JRuwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 18:31:02
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 14:30:58.376154 2026] [security2:error] [pid 1153096:tid 1153098] [client 172.71.131.37:13292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.frontier-sales.com.exede-sales.com"] [uri "/.git/config"] [unique_id "apMlYgPu7kjWDFxrTUYyjQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-29 00:27:14
(3 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:57:16
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:57:10.026912 2026] [security2:error] [pid 10741:tid 10741] [client 172.71.131.37:13165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.castagnino.com"] [uri "/.git/HEAD"] [unique_id "apIgVmuKow8uqYYmYCVhYAAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 20:17:48
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:17:40.851687 2026] [security2:error] [pid 15256:tid 15256] [client 172.71.131.37:12444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ondakompun.com"] [uri "/.git/config"] [unique_id "apHs5Oaa1boaJu7ba_6bHQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-28 17:37:14
(3 days ago)
[FriAug2819:37:09.9322732026][security2:error][pid2349627:tid2349799][client172.71.131.37:0]ModSecur ...
show more
[FriAug2819:37:09.9322732026][security2:error][pid2349627:tid2349799][client172.71.131.37:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mail.probuild.ch\"][uri\"/.git/HEAD\"][unique_id\"apHHRcRsGUXokF-jp-2ZjQAAAAk\"]
show less
Hacking
Web App Attack
๐ง๐ช
madeit
2026-08-27 06:00:45
(5 days ago)
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-26 19:18:06
(5 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.71.131.37 (FR/France/-): 1 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.71.131.37 (FR/France/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:03:24
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:03:17.089254 2026] [security2:error] [pid 6667:tid 6667] [client 172.71.131.37:12409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "n4fh.com"] [uri "/.git/HEAD"] [unique_id "ao6BpcRjVi4XmEWqicXbRwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
darkfader
2026-08-25 17:24:00
(6 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:38:51
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:38:45.007262 2026] [security2:error] [pid 14677:tid 14677] [client 172.71.131.37:14297] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.janepopowich.com"] [uri "/.git/config"] [unique_id "ao3FFVBt5gvB4rf6LYPRNAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 18:43:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:42:57.714438 2026] [security2:error] [pid 11246:tid 11246] [client 172.71.131.37:11175] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thepotteriesmesilla.com"] [uri "/.git/HEAD"] [unique_id "aoyQseXcJREAeCCDVoYmdAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-23 22:25:19
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-22 22:23:19
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 12:09:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 08:09:16.731339 2026] [security2:error] [pid 18874:tid 18897] [client 172.71.131.37:14126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "socialanxietywebsite.com"] [uri "/.git/config"] [unique_id "aomRbGEvjtc7Gq7nH81eBgAAARQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack