๐ฉ๐ช
Blexyel
2026-06-12 23:31:57
(7 hours ago)
172.71.164.149 - - [13/Jun/2026:01:31:56 +0200] "GET /old/.git/info/grafts HTTP/1.1" 404 153 "-" "Mo ...
show more
172.71.164.149 - - [13/Jun/2026:01:31:56 +0200] "GET /old/.git/info/grafts HTTP/1.1" 404 153 "-" "Mozilla/5.0 (Windows NT 10.0; rv:78.0) Gecko/20100101 Firefox/78.0" "136.243.2.38"
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 00:55:29
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 20:55:23.494634 2026] [security2:error] [pid 30438:tid 30438] [client 172.71.164.149:12799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tibbertonshropshire.org"] [uri "/.git/config"] [unique_id "aioHe7re50_PKNDgm94x0wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-11 00:26:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 20:26:34.409275 2026] [security2:error] [pid 5490:tid 5490] [client 172.71.164.149:10926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "malamutian.net"] [uri "/.git/config"] [unique_id "aioAuowGZDn5EVwOKDOgCAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-06-09 01:11:24
(4 days ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 11:08:34
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 07:08:26.730360 2026] [security2:error] [pid 1388113:tid 1388113] [client 172.71.164.149:13409] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "notariapenco.cl"] [uri "/.env.staging"] [unique_id "adTlqnEzASGCNiaTLxR-pgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ger-stg-sifi1
2026-04-06 17:54:02
(2 months ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
Anonymous
2026-04-05 21:36:36
(2 months ago)
[Sun Apr 05 23:36:34.748587 2026] [authz_core:error] [pid 30573] [client 172.71.164.149:9360] AH0163 ...
show more
[Sun Apr 05 23:36:34.748587 2026] [authz_core:error] [pid 30573] [client 172.71.164.149:9360] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Apr 05 23:36:34.758630 2026] [authz_core:error] [pid 30573] [client 172.71.164.149:9360] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Apr 05 23:36:34.765741 2026] [authz_core:error] [pid 30573] [client 172.71.164.149:9360] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 18:48:45
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 14:48:34.356762 2026] [security2:error] [pid 15388:tid 15388] [client 172.71.164.149:9725] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ossinatm.pierrebastin.com"] [uri "/config/.env.local"] [unique_id "adFdArkU6OAMc8qrjwZnjwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 09:29:38
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 05:29:30.555361 2026] [security2:error] [pid 13374:tid 13374] [client 172.71.164.149:9431] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lspfest.com"] [uri "/.git/config"] [unique_id "adDZ-iA3URBv9TOGosCAGwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-04 00:43:10
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-196)
Hacking
๐บ๐ธ
mnsf
2026-04-03 22:05:32
(2 months ago)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-02 21:05:33
(2 months ago)
Too many Status 40X (28)
Scanning/Probing (28)
Brute-Force
Web App Attack
๐ซ๐ท
masterguru
2026-04-02 13:44:01
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-197)
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-01 20:24:54
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 01 16:24:48.654298 2026] [security2:error] [pid 28878:tid 28878] [client 172.71.164.149:14081] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.dc406.org"] [uri "/.env.production"] [unique_id "ac1_EJVZEJjok5mmrq162wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
TheCoon
2026-04-01 15:45:01
(2 months ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking