๐จ๐ญ
backslash
2026-06-04 09:33:00
(7 hours ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-06-04 04:42:04
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 00:41:57.634167 2026] [security2:error] [pid 10419:tid 10428] [client 172.71.164.123:11727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lisabees.net"] [uri "/.git/config"] [unique_id "aiECFbl81E6GtYsJdkwftQAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 20:39:44
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 16:39:39.736030 2026] [security2:error] [pid 17054:tid 17054] [client 172.71.164.123:13469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "powerlessons.net"] [uri "/.git/config"] [unique_id "aiCRC0Av0H77iRCTUgVpjAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 16:08:23
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 12:08:15.716225 2026] [security2:error] [pid 11615:tid 11615] [client 172.71.164.123:10715] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "new-bethel-baptist-church.com"] [uri "/.git/config"] [unique_id "ah7_71H3jdLytVItPZzu-QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-05-29 10:05:41
(6 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-28 08:09:33
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 28 04:09:25.923972 2026] [security2:error] [pid 15173:tid 15173] [client 172.71.164.123:9268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theflyingdutchman.us"] [uri "/.env.development"] [unique_id "ahf4NQ6F0k4iQQ7jXCDU1gAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-24 20:54:15
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 16:54:07.946538 2026] [security2:error] [pid 8697:tid 8697] [client 172.71.164.123:9558] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.miele.pamplonaserviciotecnico.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.miele.pamplonaserviciotecnico.com"] [uri "/backup.sql"] [unique_id "ahNlb0u5K56JWI-U4tJg0AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-21 01:39:55
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-05-15 00:03:00
(2 weeks ago)
2026-05-15T02:02:59.170108+02:00 nimbus sshd[145328]: Invalid user benhall from 172.71.164.123 port ...
show more
2026-05-15T02:02:59.170108+02:00 nimbus sshd[145328]: Invalid user benhall from 172.71.164.123 port 53184
...
show less
Brute-Force
SSH
๐บ๐ธ
TPI-Abuse
2026-05-13 12:06:22
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 08:06:12.393234 2026] [security2:error] [pid 22889:tid 22889] [client 172.71.164.123:9858] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.hemihauling.com"] [uri "/.env.local"] [unique_id "agRpNKNAs-QxcE_Q4JePAgAAAC4"], referer: https://www.google.com/search?q=webdisk.hemihauling.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-12 13:42:13
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-09 06:54:08
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 02:54:01.064856 2026] [security2:error] [pid 18417:tid 18417] [client 172.71.164.123:11279] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newhopepetgrooming.com"] [uri "/.git/config"] [unique_id "af7aCclxLDcaq1hay2cveQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 11:14:39
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 07:14:32.956746 2026] [security2:error] [pid 9027:tid 9027] [client 172.71.164.123:11634] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gilcaro.com"] [uri "/.git/config"] [unique_id "af3FmOKA_k2swBWzmiVPDQAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 00:39:05
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.123 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 20:38:49.285124 2026] [security2:error] [pid 27027:tid 27027] [client 172.71.164.123:9652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.batchovens.net"] [uri "/.env.development.local"] [unique_id "afvfGYJVu-ObVAblM-LxJAAAAAI"], referer: https://www.google.com/search?q=www.batchovens.net
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-05 13:26:26
(4 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack