๐บ๐ธ
TPI-Abuse
2026-10-06 00:36:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 20:36:31.986059 2026] [security2:error] [pid 32568:tid 32568] [client 172.71.15.68:12539] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.ozarktulsa.com"] [uri "/.git/config"] [unique_id "asRCjzCa-gWy0Dk5VcHHmAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-10-05 05:12:29
(3 days ago)
Web App Attack
Anonymous
2026-10-04 12:26:26
(3 days ago)
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CR ...
show more
Web probing (1 hits in 24h) on default-vhost: sensitive-path scans and/or 404 bursts. Reported by CRMON.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-04 03:08:45
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 23:08:38.686115 2026] [security2:error] [pid 8954:tid 8954] [client 172.71.15.68:13494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "summit1000.group.smartstylehair.com"] [uri "/.git/config"] [unique_id "asHDNgk8cyA46vGOUOKorQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-10-03 16:17:44
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 15:19:59
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 11:19:55.893508 2026] [security2:error] [pid 28622:tid 28645] [client 172.71.15.68:10823] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thebiglies.net"] [uri "/.git/config"] [unique_id "ar_LmyknEzMgVtJbnlnfWAAAAUQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 13:21:45
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 09:21:38.291573 2026] [security2:error] [pid 16464:tid 16464] [client 172.71.15.68:13437] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thesilverlegion.org"] [uri "/.git/config"] [unique_id "ar-v4uj0U8S0rfl_EMiUzgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 01:54:16
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 21:54:10.235559 2026] [security2:error] [pid 27629:tid 27629] [client 172.71.15.68:12905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bacona.net"] [uri "/.git/config"] [unique_id "ar8OwsBMUSPPR8oncjcomQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 00:59:41
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 20:59:35.879936 2026] [security2:error] [pid 26100:tid 26123] [client 172.71.15.68:13279] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "annaly.org"] [uri "/.git/config"] [unique_id "ar8B98_saYzJPKEHAvVvBgAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-10-02 00:24:08
(6 days ago)
[FriOct0202:24:02.0469402026][security2:error][pid108561:tid108586][client172.71.15.68:0]ModSecurity ...
show more
[FriOct0202:24:02.0469402026][security2:error][pid108561:tid108586][client172.71.15.68:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"710\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"4hosts.net\"][uri\"/.git/config\"][unique_id\"ar75otgMG7A8OPznTAtRZgAAAFc\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 04:55:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:55:29.635533 2026] [security2:error] [pid 19524:tid 19524] [client 172.71.15.68:13922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jjhfamily.com"] [uri "/.git/config"] [unique_id "aryWQbPZc68QcO8utWJScgAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 23:27:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 19:27:42.137638 2026] [security2:error] [pid 12634:tid 12634] [client 172.71.15.68:9672] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigheartskitchen.com"] [uri "/.git/config"] [unique_id "arxJbtQqq2auevfK8k6CaAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-29 04:06:56
(1 week ago)
[29/Sep/2026:07:06:55 +0300] -- 172.71.15.68 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /c ...
show more
[29/Sep/2026:07:06:55 +0300] -- 172.71.15.68 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /credentials.json HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 04:35:07
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.15.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 00:34:58.904849 2026] [security2:error] [pid 1317:tid 1317] [client 172.71.15.68:11095] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "obramaq.cl"] [uri "/.git/config"] [unique_id "aric8tKCpsOSQVNmUilyjgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-09-27 01:33:46
(1 week ago)
Login credentials theft attempt
Hacking