πΊπΈ
mnsf
2026-06-11 11:05:09
(4 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
π¦πΊ
trentwiles.com
2026-05-14 09:18:31
(1 month ago)
Unauthorized connection attempt detected from IP address 172.71.164.2 to port 443 [SYD]
Port Scan
π©πͺ
David Ferneding
2026-04-14 15:19:56
(2 months ago)
Blocked by UFW (TCP on 80)
Source port: 26263
TTL: 58
Packet length: 60
TOS: 0x00
This report (for ...
show more
Blocked by UFW (TCP on 80)
Source port: 26263
TTL: 58
Packet length: 60
TOS: 0x00
This report (for 172.71.164.2) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-07 08:27:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 04:27:10.350855 2026] [security2:error] [pid 734001:tid 734001] [client 172.71.164.2:10167] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.teenybikinigirls.com"] [uri "/.git/refs/heads/main"] [unique_id "adS_3m_kRR-JiaHyqxN3CwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-06 06:05:43
(2 months ago)
Scanning/Probing (21)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-06 05:27:42
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 01:27:36.079469 2026] [security2:error] [pid 12570:tid 12570] [client 172.71.164.2:12596] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.estatemartinc.com"] [uri "/.git/refs/heads/master"] [unique_id "adNESFlvgAFNP9owcKcppQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-04-04 20:05:18
(2 months ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
π³π±
Eric
2026-04-04 19:40:04
(2 months ago)
[Sat Apr 04 19:40:02.875638 2026] [security2:error] [pid 3835433:tid 3835433] [client 172.71.164.2:1 ...
show more
[Sat Apr 04 19:40:02.875638 2026] [security2:error] [pid 3835433:tid 3835433] [client 172.71.164.2:13870] [client 172.71.164.2] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "fambus.nl"] [uri "/.git/HEAD"] [unique_id "adFpEgMMx2cA4o6kmZUf3gAAAAc"]
[Sat Apr 04 19:40:02.896475 2026] [security2:error] [pid 3835433:tid 3835433] [client 172.71.164.2:13870] [client 172.71.164.2] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severi
...
show less
Hacking
Web App Attack
π«π·
dynamix
2026-04-04 16:07:06
(2 months ago)
Multiple WAF Violations
Web App Attack
π«π·
masterguru
2026-04-04 02:08:13
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-197)
Hacking
πΊπΈ
TPI-Abuse
2026-04-04 00:40:08
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 20:39:57.593246 2026] [security2:error] [pid 9413:tid 9413] [client 172.71.164.2:13044] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.belgiophar.org"] [uri "/.git/logs/HEAD"] [unique_id "adBd3cWPRTM_Xaejojul8gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-04-03 21:40:42
(2 months ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
πΊπΈ
mnsf
2026-04-03 19:05:14
(2 months ago)
Scanning/Probing (18)
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 18:13:21
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 14:13:13.763116 2026] [security2:error] [pid 18569:tid 18569] [client 172.71.164.2:13047] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.hawaiivacations.com"] [uri "/backend/.env"] [unique_id "adADOdkMubE1HWop9nk2gwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 17:20:07
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 13:19:59.539492 2026] [security2:error] [pid 482:tid 482] [client 172.71.164.2:11199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.paxbrewing.com"] [uri "/.git/refs/heads/main"] [unique_id "ac_2v5bt0J4iERpbMyiEPAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack