๐ซ๐ท
dynamix
2026-06-06 19:59:30
(11 hours ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-06-06 06:55:11
(1 day ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
Oakley
2026-06-05 09:42:27
(1 day ago)
(confirmed_bot_sig) Confirmed bot
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-02 15:42:24
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 11:42:18.596035 2026] [security2:error] [pid 30019:tid 30019] [client 172.71.172.142:9873] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "puckerbuttbikinis.com"] [uri "/.git/config"] [unique_id "ah752kyx_4rWg8gN5cLEUwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 12:06:11
(4 days ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-23 12:37:42
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 23 08:37:33.725349 2026] [security2:error] [pid 29769:tid 29787] [client 172.71.172.142:9272] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "madring.click"] [uri "/.git/config"] [unique_id "ahGfjX6GYWDQsOPO4HLUWQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-23 08:27:32
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
strxmpp
2026-05-16 09:58:54
(3 weeks ago)
172.71.172.142 - - [16/May/2026:11:58:51 +0200] "GET /.env.save HTTP/1.1" 404 4890 "-" "Mozilla/5.0 ...
show more
172.71.172.142 - - [16/May/2026:11:58:51 +0200] "GET /.env.save HTTP/1.1" 404 4890 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)"
...
show less
Bad Web Bot
๐ฆ๐น
services.org.pl
2026-05-14 05:12:00
(3 weeks ago)
connect() failed (111: Connection refused) while connecting to upstream, client: 172.71.172.142, ser ...
show more
connect() failed (111: Connection refused) while connecting to upstream, client: 172.71.172.142, server: notebook.services.org.pl, request: "GET / HTTP/1.1", upstream: "http://127.0.0.1:24764/", host: "notebook.services.org.pl"
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 14:25:45
(4 weeks ago)
(mod_security) mod_security (id:210730) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 10:25:39.150084 2026] [security2:error] [pid 14665:tid 14686] [client 172.71.172.142:10454] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.victorchiarizia.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.victorchiarizia.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "af3yYxrA65Bz_iu7nM4ZpAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 17:30:46
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 13:30:32.376294 2026] [security2:error] [pid 22653:tid 22653] [client 172.71.172.142:10472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tpdtuberental.com.bonefrog.com"] [uri "/.env"] [unique_id "afzMOBKHQnW-QkP7RgM-wgAAABo"], referer: https://www.google.com/search?q=tpdtuberental.com.bonefrog.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-07 00:39:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.142 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 06 20:38:48.385945 2026] [security2:error] [pid 24132:tid 24132] [client 172.71.172.142:14048] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.batchovens.net"] [uri "/.env.production"] [unique_id "afvfGFEdGhQFdDpYIL4oYwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
SpaceHost-Server
2026-05-05 22:33:01
(1 month ago)
Brute-Force
Web App Attack
๐ฉ๐ช
macrob
2026-05-05 14:09:41
(1 month ago)
2026/05/05 14:09:38 [error] 4182411#4182411: *202847140 access forbidden by rule, client: 172.71.172 ...
show more
2026/05/05 14:09:38 [error] 4182411#4182411: *202847140 access forbidden by rule, client: 172.71.172.142, server: binixo.mx, request: "GET /admin HTTP/2.0", host: "binixo.mx"
2026/05/05 14:09:38 [error] 4182411#4182411: *202847140 access forbidden by rule, client: 172.71.172.142, server: binixo.mx, request: "GET /admin/content HTTP/2.0", host: "binixo.mx"
2026/05/05 14:09:40 [error] 4182411#4182411: *202847140 access forbidden by rule, client: 172.71.172.142, server: binixo.mx, request: "GET /.env.local HTTP/2.0", host: "binixo.mx"
...
show less
Web App Attack
๐จ๐ฆ
moskrin
2026-05-02 23:02:17
(1 month ago)
Spam bot
Web Spam
Bad Web Bot