๐บ๐ธ
TPI-Abuse
2026-05-15 08:31:18
(2 weeks ago)
(mod_security) mod_security (id:210730) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 04:31:11.629796 2026] [security2:error] [pid 1655:tid 1655] [client 172.71.164.150:9280] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||h-vpastoralcharge.org|F|2"] [data ".key"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "h-vpastoralcharge.org"] [uri "/config/master.key"] [unique_id "agbZz5US9zq_dVbWj8buagAAABI"], referer: https://www.google.com/search?q=h-vpastoralcharge.org
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-05-13 12:48:51
(3 weeks ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
mawan
2026-05-13 04:26:46
(3 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐จ๐ฆ
dispensight
2026-05-11 07:29:42
(3 weeks ago)
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help (Dispensight ...
show more
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help (Dispensight Clown Vacuum).
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-11 05:17:00
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 01:16:52.095375 2026] [security2:error] [pid 13046:tid 13046] [client 172.71.164.150:13760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.khaoula.com"] [uri "/.env"] [unique_id "agFmROScC7PM60IKlBJgMQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
dispensight
2026-05-09 08:52:45
(3 weeks ago)
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help (Dispensight ...
show more
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help (Dispensight Clown Vacuum).
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-08 13:28:44
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 09:28:38.863611 2026] [security2:error] [pid 27437:tid 27437] [client 172.71.164.150:11330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.loriarsenault.com"] [uri "/.git/config"] [unique_id "af3lBkfGcoozMot0zs5WegAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
dispensight
2026-05-07 21:09:08
(3 weeks ago)
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help (Dispensight ...
show more
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help (Dispensight Clown Vacuum).
show less
Web App Attack
Bad Web Bot
๐จ๐ฆ
dispensight
2026-05-07 04:57:08
(4 weeks ago)
WordPress UA-spoofed probe (400). Cloudflare proxy, Germany. Referrer: dispensight.help.
Web App Attack
Bad Web Bot
๐ฆ๐บ
trentwiles.com
2026-05-05 13:00:58
(4 weeks ago)
Unauthorized connection attempt detected from IP address 172.71.164.150 to port 443 [SYD]
Port Scan
๐ฌ๐ง
Oakley
2026-05-01 00:58:50
(1 month ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-30 19:07:47
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 15:07:43.984524 2026] [security2:error] [pid 12973:tid 12973] [client 172.71.164.150:13468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.namefinder.com"] [uri "/.git/config"] [unique_id "afOof6AB5Rc3cj5WfFwJxAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 16:39:54
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 12:39:46.752868 2026] [security2:error] [pid 4904:tid 4904] [client 172.71.164.150:9283] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.marjorierosenberg.com"] [uri "/.git/config"] [unique_id "afOF0jm9Px4i7jZrt5ltiQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
dispensight
2026-04-30 11:06:28
(1 month ago)
WordPress UA-spoofed probe(s) returning 400 on non-WordPress server. Cloudflare proxy, Germany. Auto ...
show more
WordPress UA-spoofed probe(s) returning 400 on non-WordPress server. Cloudflare proxy, Germany. Automated WP scanner.
show less
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-04-30 09:21:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.150 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 05:21:12.809064 2026] [security2:error] [pid 26753:tid 26753] [client 172.71.164.150:12901] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.greatchristianadventure.com"] [uri "/.git/config"] [unique_id "afMfCPPWRqp_lRp05WAagQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack