๐บ๐ธ
TPI-Abuse
2026-06-16 01:03:43
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 15 21:03:37.168890 2026] [security2:error] [pid 16434:tid 16434] [client 172.71.148.168:9536] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ryzezito.com"] [uri "/.git/config"] [unique_id "ajCg6V6jEuvHQnwSPW-l0AAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-13 19:45:47
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 13 15:45:43.430053 2026] [security2:error] [pid 32760:tid 32760] [client 172.71.148.168:11304] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mordesign1.com"] [uri "/.env.production"] [unique_id "ai2zZ7eXea2iWyAgp_bhXgAAAHY"], referer: https://www.google.com/search?q=mordesign1.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
TheCoon
2026-06-06 00:45:02
(1 week ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-02 15:37:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:37:16.417107 2026] [security2:error] [pid 1728:tid 1728] [client 172.71.148.168:10249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "primemanagementmn.com"] [uri "/.git/config"] [unique_id "ah74rCmyDasA8yjoaP_fvAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 15:21:48
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:21:42.119343 2026] [security2:error] [pid 16031:tid 16059] [client 172.71.148.168:13571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peimbert.com"] [uri "/.git/config"] [unique_id "ah71BsazIyy7y9iR7nG8jQAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 12:47:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:47:43.846621 2026] [security2:error] [pid 16958:tid 16981] [client 172.71.148.168:11573] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hdtv55.com"] [uri "/.git/config"] [unique_id "ah7Q778JmankIzU1vsrQrAAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 06:05:40
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 06:56:25
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 02:56:17.595911 2026] [security2:error] [pid 5743:tid 5743] [client 172.71.148.168:12108] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stellabluesales.com"] [uri "/.git/config"] [unique_id "af7akWxVBdm1n12hEyhXsAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 10:40:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 06:39:52.638322 2026] [security2:error] [pid 14661:tid 14661] [client 172.71.148.168:11380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "grasslakepizzatime.com"] [uri "/.git/config"] [unique_id "af29eL0RbtgfOyJTF5ANTgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 10:06:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 06:06:00.770458 2026] [security2:error] [pid 25904:tid 25904] [client 172.71.148.168:12615] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "markallan.com"] [uri "/.git/config"] [unique_id "af21iFD4Sa_2bod9BxBjWwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Lino Project
2026-05-06 00:50:59
(1 month ago)
172.71.148.168 - - [06/May/2026:02:50:58 +0200] "GET /.env HTTP/2.0" 403 223 "https://www.google.com ...
show more
172.71.148.168 - - [06/May/2026:02:50:58 +0200] "GET /.env HTTP/2.0" 403 223 "https://www.google.com/search?q=www.tiraunporco.it" "Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.6422.113 Mobile Safari/537.36"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-05-03 12:28:25
(1 month ago)
[SunMay0314:28:20.6102142026][security2:error][pid3060385:tid3060424][client172.71.148.168:0]ModSecu ...
show more
[SunMay0314:28:20.6102142026][security2:error][pid3060385:tid3060424][client172.71.148.168:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:user-agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"brunocampagna.com\"][uri\"/.git/config\"][unique_id\"afc_ZMeQ0mBkKPnJrQilEgAAAEI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 11:03:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 07:03:10.461935 2026] [security2:error] [pid 10881:tid 10881] [client 172.71.148.168:11996] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.vabq.com"] [uri "/.git/config"] [unique_id "afM27irzwnpPOrvMagFBBQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 15:09:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 11:09:04.484847 2026] [security2:error] [pid 13390:tid 13406] [client 172.71.148.168:12572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "strengthsmatter.teritemme.com"] [uri "/.git/config"] [unique_id "afIfEIW1S1px2ryqJs_JuwAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-25 06:30:44
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.168 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 25 02:30:38.918041 2026] [security2:error] [pid 26879:tid 26879] [client 172.71.148.168:13713] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ginaotto.com"] [uri "/.git/config"] [unique_id "aexfjiuM0dbu4z6p0KWzngAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack