๐ฉ๐ช
Blexyel
2026-06-26 22:34:11
(1 day ago)
172.71.164.41 - - [27/Jun/2026:00:34:11 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 ...
show more
172.71.164.41 - - [27/Jun/2026:00:34:11 +0200] "GET /.git/config HTTP/1.1" 404 120 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Brute-Force
Web App Attack
๐ฉ๐ช
psauxit
2026-06-22 17:04:19
(5 days ago)
Fail2Ban - NGINX bad requests 400-401-403-404-444, high level vulnerability scanning, commonly xmlrp ...
show more
Fail2Ban - NGINX bad requests 400-401-403-404-444, high level vulnerability scanning, commonly xmlrpc_attack, wp-login brute force, excessive crawling/scraping
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-22 05:59:57
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 01:59:48.208685 2026] [security2:error] [pid 12075:tid 12075] [client 172.71.164.41:11644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "deandobkin.com"] [uri "/.env.sample"] [unique_id "ajjPVMNvd0cEdtLrKm07lgAAAAE"], referer: https://www.google.com/search?q=deandobkin.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-21 09:10:47
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 05:10:42.753167 2026] [security2:error] [pid 10853:tid 10853] [client 172.71.164.41:12769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jewersmail.com.crazycoin.net"] [uri "/.env"] [unique_id "ajeqkltLhGUZqWVjPBVVUwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
strxmpp
2026-06-21 04:15:54
(1 week ago)
172.71.164.41 - - [21/Jun/2026:06:15:53 +0200] "GET /.git/config HTTP/1.1" 404 5852 "-" "Mozilla/5.0 ...
show more
172.71.164.41 - - [21/Jun/2026:06:15:53 +0200] "GET /.git/config HTTP/1.1" 404 5852 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/127.0 Safari/537.36"
...
show less
Bad Web Bot
๐ฉ๐ช
FeG Deutschland
2026-06-19 18:01:53
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฎ๐ฉ
Burayot
2026-06-19 07:58:23
(1 week ago)
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 172.71.164.41 (DE/Germany/-): 2 in t ...
show more
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 172.71.164.41 (DE/Germany/-): 2 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-07 13:12:04
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 07 09:11:56.761601 2026] [security2:error] [pid 9301:tid 9301] [client 172.71.164.41:12599] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "missyshinoski.info"] [uri "/.git/config"] [unique_id "aiVuHJwo2w4r0NgynmhiYwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-06-07 06:31:01
(3 weeks ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 22:42:23
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 18:42:18.415681 2026] [security2:error] [pid 25246:tid 25246] [client 172.71.164.41:12138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.micadensoftware.com"] [uri "/.git/config"] [unique_id "aiSiSi7TS_TfXgnpiPo_pgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
dklueh79
2026-06-04 18:20:37
(3 weeks ago)
Probe for vulnerabilities. Path attempted: /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 11:26:38
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 07:26:34.364230 2026] [security2:error] [pid 30134:tid 30134] [client 172.71.164.41:10919] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "happyjackmc.com"] [uri "/.git/config"] [unique_id "aiFg6r1LVc19hGHkMqJe8wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 03:51:23
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:51:19.108809 2026] [security2:error] [pid 23901:tid 23901] [client 172.71.164.41:13339] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "afjm.net"] [uri "/.git/config"] [unique_id "aiD2N9EofW8lCFeoU6v3lQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 19:55:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 15:55:47.323887 2026] [security2:error] [pid 12300:tid 12333] [client 172.71.164.41:10696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fluitles.eu"] [uri "/.git/config"] [unique_id "aiCGw-oCSeI-l5UELmxxXQAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-03 00:49:09
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 20:49:05.091405 2026] [security2:error] [pid 29316:tid 29316] [client 172.71.164.41:13090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kameleonquilt.com"] [uri "/.git/config"] [unique_id "ah96AZnLlhmEqOGsS_sn9AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack