๐ฉ๐ช
FeG Deutschland
2026-08-29 15:02:25
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 09:24:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 05:24:21.487673 2026] [security2:error] [pid 18748:tid 18748] [client 172.71.135.68:9914] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.peterjohnsonya.com"] [uri "/.git/HEAD"] [unique_id "apKlRWVCdqLDrsj4IH_gDgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 16:28:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 12:28:27.386981 2026] [security2:error] [pid 5593:tid 5593] [client 172.71.135.68:14313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.chefsuepong.com"] [uri "/.git/HEAD"] [unique_id "apG3K43yiLr_rY5nlMaPngAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-28 15:32:54
(1 day ago)
[FriAug2817:32:47.8142692026][security2:error][pid2836782:tid2836799][client172.71.135.68:0]ModSecur ...
show more
[FriAug2817:32:47.8142692026][security2:error][pid2836782:tid2836799][client172.71.135.68:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.biling.maurokorangraf.ch\"][uri\"/.git/HEAD\"][unique_id\"apGqH3EUEi3V_FDIq6ivEAAAAAY\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 02:51:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:51:05.358225 2026] [security2:error] [pid 13000:tid 13000] [client 172.71.135.68:10587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.xcarsubscription.com"] [uri "/.git/config"] [unique_id "apD3mZ0LBFlQ8RgqKmyf9AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:14:52
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:14:44.550872 2026] [security2:error] [pid 7502:tid 7502] [client 172.71.135.68:13258] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bmillernotary.com"] [uri "/.git/config"] [unique_id "apAOFCuevOJlLKuuk5oHmwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:23:20
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:23:16.222467 2026] [security2:error] [pid 28910:tid 28931] [client 172.71.135.68:9671] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sentientstyle.com"] [uri "/.git/config"] [unique_id "ao_JxFuZn7DZdOJTPC42VgAAAco"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 03:00:06
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:59:57.119400 2026] [security2:error] [pid 1067:tid 1067] [client 172.71.135.68:10512] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scala-global.com"] [uri "/.git/config"] [unique_id "ao-oLXIpl7x6Sfps3rXZPwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-26 22:00:44
(3 days ago)
Auto-ban: >3000 req/min op 2026-08-26
Web App Attack
SSH
Hacking
๐ง๐ช
madeit
2026-08-26 02:37:54
(4 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 21:31:20
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:31:13.949995 2026] [security2:error] [pid 9145:tid 9145] [client 172.71.135.68:9541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.chipnado.com"] [uri "/.git/config"] [unique_id "ao4JoQH2sxeYlqN6WhMl9gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 18:03:31
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:03:24.554640 2026] [security2:error] [pid 3399:tid 3399] [client 172.71.135.68:13385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.michaelcaico.com"] [uri "/.git/HEAD"] [unique_id "ao3Y7EmqSTjkxQX_6uyQ2wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:18:56
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:18:48.961817 2026] [security2:error] [pid 3724:tid 3724] [client 172.71.135.68:13379] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sinsky.net"] [uri "/.git/config"] [unique_id "ao3AaN4LW7zhL2cp3QKOBAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 06:08:29
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 02:08:24.587818 2026] [security2:error] [pid 31225:tid 31225] [client 172.71.135.68:10341] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "roguetechtalks.ficklepassionproductions.com"] [uri "/.git/HEAD"] [unique_id "ao0xWJ4jGW2EovCy4raRAgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 22:20:08
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.135.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 18:20:01.607236 2026] [security2:error] [pid 25647:tid 25647] [client 172.71.135.68:13415] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.acuherbclinic.com"] [uri "/.git/config"] [unique_id "aozDkeq2GxZPzRFYSfRaHwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack