๐บ๐ธ
TPI-Abuse
2026-06-07 05:29:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 01:29:10.486062 2026] [security2:error] [pid 3257:tid 3264] [client 172.71.144.140:13956] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nikketanails.giere.us"] [uri "/.git/config"] [unique_id "aiUBpg1AGI2wrB1enC_cEQAAAIQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-05 02:46:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 22:46:07.603652 2026] [security2:error] [pid 12564:tid 12564] [client 172.71.144.140:12170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "unclemaomao.org"] [uri "/.git/config"] [unique_id "aiI4b1dy5NClVNKh9oQlwAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 14:19:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 10:19:04.544318 2026] [security2:error] [pid 28383:tid 28383] [client 172.71.144.140:11432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travelingguitarfoundation.org"] [uri "/.git/config"] [unique_id "aiGJWD4Py6icwU9CFlUOowAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 14:15:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 10:15:08.294605 2026] [security2:error] [pid 13217:tid 13217] [client 172.71.144.140:9643] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "koolcoastalnights.com"] [uri "/.git/config"] [unique_id "ah7lbGyCliKk6W5OY5uLXQAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 13:49:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:49:29.744553 2026] [security2:error] [pid 6928:tid 6928] [client 172.71.144.140:12842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kraftre.com"] [uri "/.git/config"] [unique_id "ah7fafckznWSlVA9dL4oFgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 08:49:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 04:49:37.381695 2026] [security2:error] [pid 27628:tid 27641] [client 172.71.144.140:9608] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dermatologycoloradosprings.com"] [uri "/.git/config"] [unique_id "ah6ZIQalG9o7yNkQimXPegAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-05-29 10:05:38
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-28 22:05:28
(2 weeks ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-27.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-16 07:47:42
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 16 03:47:33.499312 2026] [security2:error] [pid 18337:tid 18337] [client 172.71.144.140:11384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.automationmp.com"] [uri "/.env.local"] [unique_id "agghFaxSMILI1yPt-PKsMgAAAA4"], referer: https://www.google.com/search?q=cpanel.automationmp.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-05-16 00:29:08
(4 weeks ago)
Unsolicited TCP traffic | Action: DROP | Port 2087
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-09 06:42:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 02:42:07.711296 2026] [security2:error] [pid 32315:tid 32315] [client 172.71.144.140:10355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globalmappinginc.com"] [uri "/.git/config"] [unique_id "af7XP9wdYsBuwgoQou-4mQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 16:35:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 12:34:59.747339 2026] [security2:error] [pid 827:tid 827] [client 172.71.144.140:10192] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "simtimxr.com"] [uri "/.git/config"] [unique_id "af4Qsz4qap6JRip9cpgbzQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-04 22:28:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.144.140 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 18:28:52.271439 2026] [security2:error] [pid 31341:tid 31359] [client 172.71.144.140:9735] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "certifiedfinancialanalyst.org"] [uri "/.git/config"] [unique_id "afkdpFWmtf3TI4ZTkJ5GYwAAAI8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐ฑ
router.al
2026-05-01 19:15:48
(1 month ago)
05/01/2026-19:15:48.358526 172.71.144.140 Protocol: 6 ET SCAN LeakIX Inbound User-Agent
Hacking
๐ฌ๐ง
Axel
2026-05-01 06:01:24
(1 month ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env.local S ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env.local Server: UK-01
show less
Web App Attack
Hacking
SQL Injection