๐บ๐ธ
mnsf
2026-06-07 08:07:37
(20 hours ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-06 22:21:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 06 18:21:05.377114 2026] [security2:error] [pid 13623:tid 13623] [client 172.71.172.129:9985] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jedaenterprises.com"] [uri "/.git/config"] [unique_id "aiSdUdkHtS5FVJU3nLW-vQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 02:39:16
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 22:39:08.845425 2026] [security2:error] [pid 16656:tid 16656] [client 172.71.172.129:10591] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dockrockukiah.com"] [uri "/.git/config"] [unique_id "ah5CTMLoVP2lTJvKwo-yJwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 22:58:49
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 18:58:43.060871 2026] [security2:error] [pid 17185:tid 17185] [client 172.71.172.129:12631] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrobertsignaturehomes.com.globalsolutions.technology"] [uri "/.git/config"] [unique_id "ahy9I5vCix2J5_zEhtD1xgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 18:54:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 14:53:59.355623 2026] [security2:error] [pid 31087:tid 31087] [client 172.71.172.129:12928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "beercruisers.glassicannex.org"] [uri "/.git/config"] [unique_id "ahyDx-l9Tb4Uqv5ZrlXizwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐น
NotACaptcha
2026-05-31 17:07:52
(1 week ago)
webserver:443 [31/May/2026] "GET /.git/config HTTP/1.1" 302 4350 "-" "Mozilla/5.0 (Windows NT 10.0; ...
show more
webserver:443 [31/May/2026] "GET /.git/config HTTP/1.1" 302 4350 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/127.0 Safari/537.36"
show less
Web App Attack
๐จ๐ญ
backslash
2026-05-23 05:18:17
(2 weeks ago)
Bad Web Bot
๐จ๐ฆ
dispensight
2026-05-15 23:07:16
(3 weeks ago)
Automated WordPress exploit probe caught via honeydomain infrastructure. Bot used http://dispensight ...
show more
Automated WordPress exploit probe caught via honeydomain infrastructure. Bot used http://dispensight.health/wp-admin/install.php?step=1 as User-Agent. 2 hits. Honeydomain operator-controlled bait; confirmed malicious WordPress scanner. Cloudflare Germany proxy.
show less
Bad Web Bot
๐บ๐ธ
mivanovs
2026-05-14 14:17:59
(3 weeks ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-14 03:25:53
(3 weeks ago)
Unauthorized connection attempt detected from IP address 172.71.172.129 to port 80 [SYD]
Port Scan
๐ท๐บ
DZBOT
2026-05-14 00:56:10
(3 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 02:17:56
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 22:17:52.524769 2026] [security2:error] [pid 11002:tid 11002] [client 172.71.172.129:10009] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wbcsnet.com"] [uri "/.git/config"] [unique_id "af1H0BgZMgpDv8-hRaPsJgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-06 23:58:45
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 19:58:42.254554 2026] [security2:error] [pid 13858:tid 13858] [client 172.71.172.129:9825] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bidsonlineauctions.com"] [uri "/.env"] [unique_id "afvVsoMU5qw1hOvd9ZdxMAAAAAA"], referer: https://www.google.com/search?q=autodiscover.bidsonlineauctions.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-04 21:42:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 04 17:42:26.722808 2026] [security2:error] [pid 14200:tid 14200] [client 172.71.172.129:10442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hersbach.net"] [uri "/.git/config"] [unique_id "afkSwrfrI4TGC8N7-z266QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-30 07:41:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 30 03:41:04.660916 2026] [security2:error] [pid 19295:tid 19295] [client 172.71.172.129:10090] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.tedharris.com"] [uri "/.git/config"] [unique_id "afMHkGKt5opLptnJqqC8gAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack