๐ฉ๐ช
www.mammazone.it
2026-07-27 15:12:19
(4 hours ago)
[Mon Jul 27 17:12:18.925279 2026] [proxy_fcgi:error] [pid 2661324] [client 172.71.148.49:12196] AH01 ...
show more
[Mon Jul 27 17:12:18.925279 2026] [proxy_fcgi:error] [pid 2661324] [client 172.71.148.49:12196] AH01071: Got error 'Primary script unknown'
[Mon Jul 27 17:12:19.026271 2026] [proxy_fcgi:error] [pid 2661324] [client 172.71.148.49:12196] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
Anonymous
2026-07-26 01:21:39
(1 day ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ง๐พ
lns.bz
2026-07-25 21:53:49
(1 day ago)
Too many 404 requests [BY]
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-07-24 00:31:57
(3 days ago)
Unsolicited TCP traffic | Action: DROP | Port 8443
Brute-Force
๐บ๐ธ
mawan
2026-07-16 14:58:59
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-15 09:18:16
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 15 05:18:00.365552 2026] [security2:error] [pid 30316:tid 30316] [client 172.71.148.49:11400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bcautosalon.com.brinkworthmodels.com"] [uri "/.env.save"] [unique_id "aldQSKq87Sdo2p9vV1AxrAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐ฑ
router.al
2026-07-02 20:53:05
(3 weeks ago)
07/02/2026-20:53:05.606583 172.71.148.49 Protocol: 6 ET EXPLOIT GraphQL Introspection Query Attempt
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-02 18:48:38
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 14:48:33.428438 2026] [security2:error] [pid 21858:tid 21858] [client 172.71.148.49:11143] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "miss-ma.com"] [uri "/.git/config"] [unique_id "akaygSChPLWfuYmUmXMSjgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-02 11:38:19
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 07:38:11.827451 2026] [security2:error] [pid 15091:tid 15091] [client 172.71.148.49:11887] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "havilahmalone.com"] [uri "/.git/config"] [unique_id "akZNo5p_AVFKhIFv8wgCvgAAADE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-01 04:34:49
(3 weeks ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-06-28 01:35:02
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 21:34:54.473034 2026] [security2:error] [pid 25904:tid 25904] [client 172.71.148.49:14256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cedula3.com"] [uri "/.env.bak"] [unique_id "akB6PjiNwkTi93Xia7WSWwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-06-26 03:22:11
(1 month ago)
Unsolicited TCP traffic | Action: DROP | Port 8443
Brute-Force
๐ฏ๐ต
S.O.B.A. Dev.
2026-06-23 03:30:07
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐จ๐ณ
Peter Yu
2026-06-21 12:32:42
(1 month ago)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 21:03:40
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.148.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 17:03:34.855786 2026] [security2:error] [pid 28206:tid 28206] [client 172.71.148.49:11625] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theastoria.com.globalweb123.com"] [uri "/.git/config"] [unique_id "aicuJonO5WLKUHRixDKtrAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack