Anonymous
2026-06-20 19:36:28
(2 days ago)
[Sat Jun 20 21:36:27.206853 2026] [authz_core:error] [pid 28371] [client 172.71.148.28:13016] AH0163 ...
show more
[Sat Jun 20 21:36:27.206853 2026] [authz_core:error] [pid 28371] [client 172.71.148.28:13016] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Jun 20 21:36:27.308887 2026] [authz_core:error] [pid 28371] [client 172.71.148.28:13016] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat Jun 20 21:36:27.406796 2026] [authz_core:error] [pid 28371] [client 172.71.148.28:13016] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐จ๐ญ
4server
2026-06-20 03:55:03
(3 days ago)
[SatJun2005:54:56.5610932026][security2:error][pid2266777:tid2267047][client172.71.148.28:0]ModSecur ...
show more
[SatJun2005:54:56.5610932026][security2:error][pid2266777:tid2267047][client172.71.148.28:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"webmail.gsdsagl.ch\"][uri\"/.git/config\"][unique_id\"ajYPEO4-o24FJ8e3a2a87AAAAQs\"]
show less
Hacking
Web App Attack
๐ท๐บ
DZBOT
2026-06-19 15:54:06
(4 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-06-19 11:47:23
(4 days ago)
[Fri Jun 19 13:47:21.850197 2026] [authz_core:error] [pid 1684] [client 172.71.148.28:10991] AH01630 ...
show more
[Fri Jun 19 13:47:21.850197 2026] [authz_core:error] [pid 1684] [client 172.71.148.28:10991] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Jun 19 13:47:22.177946 2026] [authz_core:error] [pid 1684] [client 172.71.148.28:10991] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Jun 19 13:47:22.224413 2026] [authz_core:error] [pid 1684] [client 172.71.148.28:10991] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
Anonymous
2026-06-18 22:15:34
(4 days ago)
[Fri Jun 19 00:15:32.795008 2026] [authz_core:error] [pid 11719] [client 172.71.148.28:11619] AH0163 ...
show more
[Fri Jun 19 00:15:32.795008 2026] [authz_core:error] [pid 11719] [client 172.71.148.28:11619] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Jun 19 00:15:32.953821 2026] [authz_core:error] [pid 11719] [client 172.71.148.28:11619] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Jun 19 00:15:33.410397 2026] [authz_core:error] [pid 11719] [client 172.71.148.28:11619] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 22:42:01
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 18:41:55.465590 2026] [security2:error] [pid 8199:tid 8199] [client 172.71.148.28:13633] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "belgiophar.net"] [uri "/.git/config"] [unique_id "aiCtszdjpNImUGmXWN5MkwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 12:11:04
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:11:00.128531 2026] [security2:error] [pid 26376:tid 26376] [client 172.71.148.28:14007] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greasythings.com"] [uri "/.git/config"] [unique_id "ah7IVGgNznggT8x6nKVD8gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 13:24:34
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-20 08:45:44
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 04:45:41.432239 2026] [security2:error] [pid 31055:tid 31189] [client 172.71.148.28:11272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "credit-card-cap.com"] [uri "/.env.development.local"] [unique_id "ag10tQuP1Fyng00mM5NDXwAAAlY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
tecnicorioja
2026-05-16 22:02:15
(1 month ago)
(Mod_security)
Web App Attack
Brute-Force
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-15 10:53:56
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 06:53:45.696745 2026] [security2:error] [pid 32229:tid 32229] [client 172.71.148.28:13234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.yukihouse.hk"] [uri "/.env.local"] [unique_id "agb7Of3F_O0-dUCsEMCOhQAAABE"], referer: https://www.google.com/search?q=autodiscover.yukihouse.hk
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 07:02:45
(1 month ago)
(mod_security) mod_security (id:210730) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 03:02:38.910229 2026] [security2:error] [pid 24097:tid 24113] [client 172.71.148.28:13819] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.atheistink.xxxmain.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.atheistink.xxxmain.com"] [uri "/backup.sql"] [unique_id "agbFDvR6DOiz6m_AKpZ5LAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
abdubhai
2026-05-12 01:00:07
(1 month ago)
172.71.148.28 - - [12/May/2026:0
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-05-08 11:14:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 07:14:24.240207 2026] [security2:error] [pid 17900:tid 17900] [client 172.71.148.28:14322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gabosoftware.com"] [uri "/.git/config"] [unique_id "af3FkHgk8O5zcaqMTLSc6gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 06:49:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.28 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 02:49:25.888157 2026] [security2:error] [pid 26303:tid 26303] [client 172.71.148.28:14114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bcgreenlibs.com"] [uri "/.git/config"] [unique_id "af2HdUTkv2jdmvs0YfuYOAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack