๐บ๐ธ
TPI-Abuse
2026-06-04 03:36:26
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:36:23.768675 2026] [security2:error] [pid 10419:tid 10427] [client 172.71.164.115:13386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oneringnetwork.net"] [uri "/.git/config"] [unique_id "aiDyt7l81E6GtYsJdkwK2wAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 11:52:46
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 07:52:40.194981 2026] [security2:error] [pid 16785:tid 16806] [client 172.71.164.115:9812] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "castaspell.com"] [uri "/.git/config"] [unique_id "ah7ECO1WV77qjmSwOAVVJwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 15:53:09
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 11:53:04.615006 2026] [security2:error] [pid 9711:tid 9711] [client 172.71.164.115:12259] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.posteios.com"] [uri "/.git/config"] [unique_id "ahxZYLGJaHEbpd5KGtKZQQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-29 22:08:06
(5 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-28.
show less
Web App Attack
SSH
Hacking
๐ฉ๐ช
SCHAPPY
2026-05-28 10:58:27
(6 days ago)
Bad bot identified by user agent
Bad Web Bot
๐ท๐บ
DZBOT
2026-05-22 23:05:49
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ป๐ณ
cimee
2026-05-22 17:27:16
(1 week ago)
This IP accessed the path /.env, which is banned.
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-18 05:21:30
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 01:21:22.916390 2026] [security2:error] [pid 26370:tid 26379] [client 172.71.164.115:9790] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.vote4joegardner.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.vote4joegardner.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "agqh0s0VzW89XOq7VwyC6wAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-14 12:46:35
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 14 08:46:30.217252 2026] [security2:error] [pid 3226:tid 3226] [client 172.71.164.115:10305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yourmenu.xyz"] [uri "/.env.production"] [unique_id "agXEJgt6GuVH-_jUzfUJuAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-13 23:14:52
(3 weeks ago)
Unauthorized connection attempt detected from IP address 172.71.164.115 to port 80 [SYD]
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-11 20:17:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 16:17:04.997616 2026] [security2:error] [pid 25272:tid 25272] [client 172.71.164.115:10768] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "quintanotariaconcepcion.cl.tecnoconce.com"] [uri "/.git/config"] [unique_id "agI5QDu_X6zIJ6eHuRvCIAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-11 02:26:14
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 10 22:26:06.930469 2026] [security2:error] [pid 22659:tid 22659] [client 172.71.164.115:10987] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.loveoflearning.com"] [uri "/sftp-config.json"] [unique_id "agE-PtVfh73Dd-PHpyxPjAAAAAI"], referer: https://www.google.com/search?q=webmail.loveoflearning.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-10 20:20:06
(3 weeks ago)
Unauthorized connection attempt detected from IP address 172.71.164.115 to port 80 [SYD]
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-09 08:12:06
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 04:12:01.175655 2026] [security2:error] [pid 25096:tid 25096] [client 172.71.164.115:10618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "abbysue.com"] [uri "/.git/config"] [unique_id "af7sUcD6jnpOj6TFCXw8-wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 03:00:11
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.115 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 23:00:02.794930 2026] [security2:error] [pid 13424:tid 13424] [client 172.71.164.115:13737] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.hazeltrane.com"] [uri "/.git/config"] [unique_id "afwAMv4DZaWaTmPMhL9mUAAAABE"], referer: https://www.google.com/search?q=webmail.hazeltrane.com
show less
Brute-Force
Bad Web Bot
Web App Attack