π―π΅
Valhalla
2026-06-24 20:56:14
(3 days ago)
Ewww, a file system command: /.env.save
Hacking
Web App Attack
π©πͺ
abdubhai
2026-06-22 08:08:20
(6 days ago)
172.71.172.165 - - [22/Jun/2026:
...
Brute-Force
πΊπΈ
drewf.ink
2026-06-21 22:17:53
(6 days ago)
[22:17] Port scanning. Port(s) scanned: TCP/8443
Port Scan
πΊπΈ
TPI-Abuse
2026-06-16 11:01:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 07:01:12.758909 2026] [security2:error] [pid 13181:tid 13181] [client 172.71.172.165:13334] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sweak.com"] [uri "/.git/config"] [unique_id "ajEs-M7z5DOAZpJtWUXCigAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
abdubhai
2026-06-11 09:12:15
(2 weeks ago)
172.71.172.165 - - [11/Jun/2026:
...
Brute-Force
π§πͺ
voormedia
2026-06-08 19:26:55
(2 weeks ago)
Accessed trap at '/wp-admin/install.php'
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 21:29:05
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 17:28:59.542585 2026] [security2:error] [pid 2606:tid 2606] [client 172.71.172.165:14113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rosemeadefarms.com"] [uri "/.git/config"] [unique_id "ah9LG4Hu6qNDcbTx7iKsDQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 20:39:44
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 16:39:36.024685 2026] [security2:error] [pid 10825:tid 10825] [client 172.71.172.165:11141] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vittariabeauty.com"] [uri "/.git/config"] [unique_id "ah8_iDx7ugG4w4u_4U_MxwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 17:09:31
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 13:09:25.142953 2026] [security2:error] [pid 14116:tid 14121] [client 172.71.172.165:9916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taxelon.com"] [uri "/.git/config"] [unique_id "ah8ORTbfnqMl7l09sNRs-gAAAcI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 16:28:58
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 12:28:50.830767 2026] [security2:error] [pid 18572:tid 18572] [client 172.71.172.165:10396] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jacobunderwoodmusic.com"] [uri "/.git/config"] [unique_id "ah8EwiFBb5UQVA3gMNjQQQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 01:45:22
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 21:45:15.033928 2026] [security2:error] [pid 28863:tid 28863] [client 172.71.172.165:13130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bayarealangarts.com"] [uri "/.git/config"] [unique_id "ah41q2U-p59gTkaRj-rEjgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-05-31 22:21:26
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
π«π·
Campus France
2026-05-09 08:20:16
(1 month ago)
[Sat May 09 10:20:15.601017 2026] [php:error] [pid 1327768] [client 172.71.172.165:11973] script '/v ...
show more
[Sat May 09 10:20:15.601017 2026] [php:error] [pid 1327768] [client 172.71.172.165:11973] script '/var/www/html/chosen.php' not found or unable to stat
[Sat May 09 10:20:15.687684 2026] [php:error] [pid 1327768] [client 172.71.172.165:11973] script '/var/www/html/file.php' not found or unable to stat
[Sat May 09 10:20:15.762351 2026] [php:error] [pid 1327768] [client 172.71.172.165:11973] script '/var/www/html/flower.php' not found or unable to stat
[Sat May 09 10:20:15.801936 2026] [php:error] [pid 1327768] [client 172.71.172.165:11973] script '/var/www/html/gifclass.php' not found or unable to stat
[Sat May 09 10:20:15.916157 2026] [php:error] [pid 1327768] [client 172.71.172.165:11973] script '/var/www/html/bless.php' not found or unable to stat
...
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-09 06:07:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 02:07:15.635027 2026] [security2:error] [pid 7333:tid 7333] [client 172.71.172.165:10248] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thekingofweed.com"] [uri "/.git/config"] [unique_id "af7PE9dRZ7NnHJDYu4qanAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-08 15:11:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 11:11:17.315757 2026] [security2:error] [pid 10166:tid 10166] [client 172.71.172.165:10926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "qwixel.com"] [uri "/.git/config"] [unique_id "af39FaJDBFdaDVrFPEhH6QAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack