Anonymous
2026-09-17 09:19:28
(2 days ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-11 13:49:44
(1 week ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-06 11:24:55
(1 week ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐จ๐ญ
4server
2026-08-31 21:33:01
(2 weeks ago)
[MonAug3123:32:57.3112512026][security2:error][pid304402:tid304681][client172.71.131.73:0]ModSecurit ...
show more
[MonAug3123:32:57.3112512026][security2:error][pid304402:tid304681][client172.71.131.73:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.allegrafamiglia.ch\"][uri\"/.git/config\"][unique_id\"apXzCZuZyhOQHTtjnRVcmQAAAUQ\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 08:28:32
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 04:28:25.405912 2026] [security2:error] [pid 693:tid 693] [client 172.71.131.73:12315] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "backstore.com"] [uri "/.git/HEAD"] [unique_id "apPpqanjjDGbxumGW2DYEgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 05:52:37
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:52:29.693200 2026] [security2:error] [pid 2714:tid 2714] [client 172.71.131.73:9968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.mjkhan.com"] [uri "/.git/HEAD"] [unique_id "apJznY101X8pzlF8e9PK1gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-28 12:17:55
(3 weeks ago)
Accessed trap at '/.git/HEAD'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 11:23:16
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:23:08.753568 2026] [security2:error] [pid 19417:tid 19417] [client 172.71.131.73:9926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.angelpc.net"] [uri "/.git/HEAD"] [unique_id "apFvnAnNZ3vagWG_NcXfdgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 09:46:20
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:46:13.079801 2026] [security2:error] [pid 19606:tid 19606] [client 172.71.131.73:11652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.abecasis.com"] [uri "/.git/HEAD"] [unique_id "apFY5XQbr63PVLA2ShFAogAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-08-28 01:14:01
(3 weeks ago)
-:443 172.71.131.73 - - [28/Aug/2026:03:13:59 +0200] - "GET /.git/config HTTP/2.0" 404 2324 "-" "Moz ...
show more
-:443 172.71.131.73 - - [28/Aug/2026:03:13:59 +0200] - "GET /.git/config HTTP/2.0" 404 2324 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-08-27 04:46:25
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:46:17.301298 2026] [security2:error] [pid 2560:tid 2560] [client 172.71.131.73:12152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jpfamilyllc.com"] [uri "/.git/config"] [unique_id "ao_BGfCYI_Z73MkABfdONAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 03:27:34
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:27:29.302020 2026] [security2:error] [pid 17108:tid 17108] [client 172.71.131.73:11445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "history.sunshinenv.com"] [uri "/.git/config"] [unique_id "ao-uobjEekmGCWvS7L-kSQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-27 02:01:02
(3 weeks ago)
[ThuAug2704:00:58.5708092026][security2:error][pid525524:tid525626][client172.71.131.73:0]ModSecurit ...
show more
[ThuAug2704:00:58.5708092026][security2:error][pid525524:tid525626][client172.71.131.73:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.galardi.ch\"][uri\"/.git/HEAD\"][unique_id\"ao-aWrFQlzmkU-Z7UsqBywAAAQQ\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 23:52:44
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 19:52:39.161631 2026] [security2:error] [pid 32242:tid 32242] [client 172.71.131.73:10302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.fatcavemedia.com"] [uri "/.git/HEAD"] [unique_id "ao4qxzQNLRlKKWKkFre9PwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:24:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.131.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:24:49.285962 2026] [security2:error] [pid 2231319:tid 2231394] [client 172.71.131.73:9856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.juantrece.com"] [uri "/.git/HEAD"] [unique_id "ao3B0fl358e3YA-hr6HITAAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack