๐บ๐ธ
TPI-Abuse
2026-10-10 00:22:04
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 20:21:57.727898 2026] [security2:error] [pid 25188:tid 25188] [client 172.71.183.73:12341] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.method1.net"] [uri "/.env.backup"] [unique_id "asmFJbuD3UZa4uOEMWHP7QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-10-09 16:35:24
(11 hours ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 16:01:42
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 12:01:35.627814 2026] [security2:error] [pid 22127:tid 22127] [client 172.71.183.73:10039] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "desertedge.band"] [uri "/wp-config.php.save"] [unique_id "askP3yRP65kIDP1V1rk6kgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 15:37:28
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 11:37:20.987443 2026] [security2:error] [pid 6409:tid 6409] [client 172.71.183.73:14160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "churchtop.com"] [uri "/wp-config.php.old"] [unique_id "askKMLwpjNC6TmxbLjFmcwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 10:30:08
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 06:29:57.196897 2026] [security2:error] [pid 16064:tid 16064] [client 172.71.183.73:11744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.arsenaultartistmanagement.com"] [uri "/.git/HEAD"] [unique_id "asjCJekBaVA_uCnrR94EfgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 09:48:59
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 05:48:52.813100 2026] [security2:error] [pid 19357:tid 19357] [client 172.71.183.73:12064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uppermotradingco.com"] [uri "/.env.staging"] [unique_id "asi4hNlq6h-YSJ6vvANd4gAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 09:23:53
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 05:23:48.146151 2026] [security2:error] [pid 24251:tid 24251] [client 172.71.183.73:13662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carbtestingidaho.com"] [uri "/.env.bak"] [unique_id "asiypNYFK4uG7P9daVyT0QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
penjaga BRIN
2026-10-09 01:20:08
(1 day ago)
Suspicious malicious activity
Hacking
๐ซ๐ท
Bensay
2026-10-08 16:11:57
(1 day ago)
HTTP web-app probe; method=GET; path=/.git/config; status=403; user-agent=Mozilla/5.0 (Macintosh; In ...
show more
HTTP web-app probe; method=GET; path=/.git/config; status=403; user-agent=Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.0.0 Safari/537.36
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 15:06:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 11:06:37.141076 2026] [security2:error] [pid 18845:tid 18845] [client 172.71.183.73:13172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "images4themind.com"] [uri "/.env.local"] [unique_id "asexfSNGoS5SxHYLvhgYhQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 11:09:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 07:08:57.240188 2026] [security2:error] [pid 20313:tid 20313] [client 172.71.183.73:9697] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kittyloveschai.com"] [uri "/.env"] [unique_id "asd5yT4YsH1mDa39vIavTQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-08 10:05:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 06:05:26.041752 2026] [security2:error] [pid 1476:tid 1476] [client 172.71.183.73:9931] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gslandservices.com"] [uri "/.env.save"] [unique_id "asdq5hBsa9zvrcLU0VmDIgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-10-08 07:45:36
(1 day ago)
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2026-10-08 05:15:31
(1 day ago)
2 attacks on password/key grabbing URLs:
GET /.ssh/id_rsa HTTP/1.1
Hacking
๐บ๐ธ
TPI-Abuse
2026-10-08 03:33:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.183.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 23:32:51.630434 2026] [security2:error] [pid 13199:tid 13199] [client 172.71.183.73:13747] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "damonmarks.com"] [uri "/wp-config.php.old"] [unique_id "ascO45KVF75Vf6Sq3GPebgAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack