πΊπΈ
TPI-Abuse
2026-06-16 21:43:31
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 17:43:26.598796 2026] [security2:error] [pid 26552:tid 26581] [client 172.71.144.112:9900] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "telecomdetectives.com.jameskeeton.com"] [uri "/.git/config"] [unique_id "ajHDfpAdcB7hTYpkgrUlyAAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π·πΊ
DZBOT
2026-06-15 18:24:10
(1 day ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-07 20:33:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 16:33:11.595366 2026] [security2:error] [pid 2443:tid 2443] [client 172.71.144.112:14226] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.antoniocobo.net"] [uri "/.git/config"] [unique_id "aiXVh_R7BNC8V2i8luJOlgAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
pinguin
2026-06-04 05:48:46
(1 week ago)
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
...
show more
Triggered Cloudflare WAF (firewallManaged) from DE.
Action taken: LOG
Protocol: HTTP/2 (GET method)
Endpoint: /s/8393e26323e28313e2430313/_/;/META-INF/maven/com.atlassian.jira/jira-webapp-dist/pom.properties
UA: Mozilla/5.0 (l9scan/2.0.8393e26323e28313e2430313; +https://leakix.net)
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
π©πͺ
Martin Lundstrom
2026-06-02 15:14:58
(2 weeks ago)
https://www.eagleeye-intelligence.com β WordPress attack. Automatically detected and blocked.
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 03:50:00
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 23:49:54.593925 2026] [security2:error] [pid 10928:tid 10928] [client 172.71.144.112:14080] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wwfstudio.com"] [uri "/.git/config"] [unique_id "ah5S4mpDyWkx90zDyzi_qAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-26 16:13:40
(3 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
π·πΊ
DZBOT
2026-05-20 17:18:02
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-05-14 04:38:31
(1 month ago)
(caddyscan) Scanner path probe from 172.71.144.112 (DE/Germany/-): 5 in the last 3600 secs; Ports: * ...
show more
(caddyscan) Scanner path probe from 172.71.144.112 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 172.71.144.112 - - [14/May/2026:04:08:01 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.144.112 - - [14/May/2026:04:37:52 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.144.112 - - [14/May/2026:04:38:12 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.144.112 - - [14/May/2026:04:38:23 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.144.112 - - [14/May/2026:04:38:28 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
π¨π¦
moskrin
2026-05-05 05:40:54
(1 month ago)
Spam bot
Web Spam
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-05-04 21:02:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 17:02:11.605500 2026] [security2:error] [pid 9543:tid 9543] [client 172.71.144.112:11592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "humandesignanalysis.org"] [uri "/.git/config"] [unique_id "afkJUwvD4JKQbmdjCpKjpgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-04 16:44:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 12:44:25.105435 2026] [security2:error] [pid 26896:tid 26896] [client 172.71.144.112:10814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.soudertonbigred.org"] [uri "/.git/config"] [unique_id "afjM6YjOJwzQa5M-hKsvvQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 13:40:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 09:40:03.754017 2026] [security2:error] [pid 21181:tid 21181] [client 172.71.144.112:12623] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.yankeetownfishing.com"] [uri "/.git/config"] [unique_id "afNbs2judDoDCBy3lGb8WQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-30 07:33:18
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 03:33:13.647609 2026] [security2:error] [pid 13449:tid 13449] [client 172.71.144.112:11106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.floorswedo.com"] [uri "/.git/config"] [unique_id "afMFuZMqnQaACQyqKVpcmQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-26 03:31:54
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.112 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 23:31:49.199727 2026] [security2:error] [pid 21551:tid 21551] [client 172.71.144.112:12245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lovebuilds.com"] [uri "/.git/config"] [unique_id "ae2HJce1NE2C8_1diJl--wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack