πΊπΈ
TPI-Abuse
2026-08-31 19:39:34
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 15:39:25.569795 2026] [security2:error] [pid 9956:tid 9956] [client 172.71.131.38:11440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "glamorgirl.net"] [uri "/.git/HEAD"] [unique_id "apXYbad2DEcPvOIIuwY82wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 18:31:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 14:30:58.375968 2026] [security2:error] [pid 1153096:tid 1153111] [client 172.71.131.38:11886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.frontier-sales.com.exede-sales.com"] [uri "/.git/HEAD"] [unique_id "apMlYgPu7kjWDFxrTUYyjgAAAE0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-29 07:44:09
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 03:44:01.563997 2026] [security2:error] [pid 17479:tid 17479] [client 172.71.131.38:13437] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.burke698.org"] [uri "/.git/HEAD"] [unique_id "apKNwedM0tEbkO7YrRy8VQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
BlueWire Hosting
2026-08-29 00:27:13
(3 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 23:57:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:57:10.026906 2026] [security2:error] [pid 7939:tid 7939] [client 172.71.131.38:12146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.castagnino.com"] [uri "/.git/config"] [unique_id "apIgVl6zPl6AGdmIx1Ql4QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 20:50:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 16:50:21.460048 2026] [security2:error] [pid 10583:tid 10583] [client 172.71.131.38:11207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.webdryer.com"] [uri "/.git/HEAD"] [unique_id "apH0jfGR_4dWALUYit3uBwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
4server
2026-08-28 17:37:13
(3 days ago)
[FriAug2819:37:09.9355712026][security2:error][pid2349637:tid2349904][client172.71.131.38:0]ModSecur ...
show more
[FriAug2819:37:09.9355712026][security2:error][pid2349637:tid2349904][client172.71.131.38:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mail.probuild.ch\"][uri\"/.git/config\"][unique_id\"apHHRQ74Y9bZRJNIdY4A4AAAAUA\"]
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 06:03:23
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:03:17.089718 2026] [security2:error] [pid 6726:tid 6726] [client 172.71.131.38:14147] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "n4fh.com"] [uri "/.git/config"] [unique_id "ao6BpdZBgPnz3y1_7GLAhwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
darkfader
2026-08-25 17:24:00
(6 days ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 18:43:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:42:57.714447 2026] [security2:error] [pid 14194:tid 14194] [client 172.71.131.38:13161] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thepotteriesmesilla.com"] [uri "/.git/config"] [unique_id "aoyQsc30fMrEYHhNigXsvwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 03:34:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 23:34:37.746704 2026] [security2:error] [pid 27600:tid 27600] [client 172.71.131.38:12090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "businessvaluationapp.com"] [uri "/.git/HEAD"] [unique_id "aou7zQGgFwHkKSCN8i2eTwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
BlueWire Hosting
2026-08-23 22:25:19
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 12:10:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 08:09:58.035941 2026] [security2:error] [pid 18946:tid 18974] [client 172.71.131.38:11202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "socialanxietywebsite.com"] [uri "/.git/HEAD"] [unique_id "aomRliy9KmSDVV-bM2brYwAAAEY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-21 17:14:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 13:14:00.246049 2026] [security2:error] [pid 16936:tid 16936] [client 172.71.131.38:14205] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "johnnyredneckclothes.com.johnandramonadunn.com"] [uri "/.git/config"] [unique_id "aoiHWGdtIg6fVyOepdaucgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
BlueWire Hosting
2026-08-21 17:13:34
(1 week ago)
High-confidence malicious configuration/VCS probe
Web App Attack