๐บ๐ธ
TPI-Abuse
2026-06-21 08:34:06
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 21 04:33:58.050749 2026] [security2:error] [pid 12130:tid 12130] [client 172.71.172.132:9709] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.imaginationbyme.com.swhinc.net"] [uri "/.env.backup"] [unique_id "ajeh9g7I_lrxsuWFabUNGwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 19:07:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 15:07:35.305679 2026] [security2:error] [pid 26298:tid 26298] [client 172.71.172.132:12019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "4petphotogifts.iyp-home.com"] [uri "/.git/config"] [unique_id "aicS91RjIA6-Pqsu8tYYfQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-08 07:15:46
(2 weeks ago)
Repeated unauthorized connection attempts to restricted service observed.
Port Scan
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 04:49:33
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 00:49:29.194505 2026] [security2:error] [pid 5717:tid 5717] [client 172.71.172.132:14021] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scotts.net"] [uri "/.git/config"] [unique_id "aiED2YlisU7Uo8hV4zwfaQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 03:35:02
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:34:56.739334 2026] [security2:error] [pid 28186:tid 28186] [client 172.71.172.132:10277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "urie.to"] [uri "/.git/config"] [unique_id "aiDyYHuwx0x50iMubMX3ygAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 21:13:43
(2 weeks ago)
(mod_security) mod_security (id:949110) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 17:13:39.458259 2026] [security2:error] [pid 10686:tid 10686] [client 172.71.172.132:13728] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.darksecretvideo.com"] [uri "/.git/config"] [unique_id "ah9HgxmOVfhKU6H21BPdeQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 17:05:23
(3 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 13:40:53
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:40:46.180047 2026] [security2:error] [pid 18985:tid 19017] [client 172.71.172.132:13082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "laradioactivitat.com"] [uri "/.git/config"] [unique_id "ah7dXh3iUEX2G4cIFur1NAAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 13:25:21
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 09:25:15.537707 2026] [security2:error] [pid 26377:tid 26377] [client 172.71.172.132:9908] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kellermoving.com"] [uri "/.git/config"] [unique_id "ah7Zu4qUNnl3KVNz7XtidQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 18:45:57
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 14:45:50.737693 2026] [security2:error] [pid 13067:tid 13067] [client 172.71.172.132:13935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.bonnesfrequences.circulodesonido.org"] [uri "/.env.save"] [unique_id "ahyB3qkvu_lNz0V58-YUaQAAAAo"], referer: https://www.google.com/search?q=www.bonnesfrequences.circulodesonido.org
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-05-26 20:30:54
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
www.mammazone.it
2026-05-19 22:31:56
(1 month ago)
[Wed May 20 00:31:56.732249 2026] [autoindex:error] [pid 468606] [client 172.71.172.132:10898] AH012 ...
show more
[Wed May 20 00:31:56.732249 2026] [autoindex:error] [pid 468606] [client 172.71.172.132:10898] AH01276: Cannot serve directory /var/www/fabiodirauso.it/images/: No matching DirectoryIndex (index.html,index.cgi,index.pl,index.php,index.xhtml,index.htm) found, and server-generated directory index forbidden by Options directive, referer: binance.com
...
show less
Hacking
Web App Attack
๐ซ๐ท
RootOPSOVH
2026-05-14 17:12:29
(1 month ago)
GET /wp-admin/install.php?step=1 | UA: http://rootops.ovh/wp-admin/install.php?step=1
Web Spam
Bad Web Bot
Web App Attack
Anonymous
2026-05-14 04:38:15
(1 month ago)
(caddyscan) Scanner path probe from 172.71.172.132 (DE/Germany/-): 5 in the last 3600 secs; Ports: * ...
show more
(caddyscan) Scanner path probe from 172.71.172.132 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 172.71.172.132 - - [14/May/2026:04:22:22 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.172.132 - - [14/May/2026:04:38:12 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.172.132 - - [14/May/2026:04:38:12 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.172.132 - - [14/May/2026:04:38:12 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 172.71.172.132 - - [14/May/2026:04:38:12 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-12 02:06:47
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.132 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 11 22:06:39.769832 2026] [security2:error] [pid 14883:tid 14883] [client 172.71.172.132:11509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.mrsreclamation.com"] [uri "/.env.production"] [unique_id "agKLLxnhAProyAXKaNxwnQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack