๐ง๐ช
madeit
2026-09-20 12:13:26
(12 hours ago)
Web App Attack
๐ง๐ช
madeit
2026-09-12 12:16:40
(1 week ago)
Web App Attack
๐ฉ๐ช
abdubhai
2026-09-07 09:40:01
(1 week ago)
172.71.190.95 - - [07/Sep/2026:1
...
Brute-Force
๐บ๐ธ
mawan
2026-08-21 16:16:02
(4 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:36:17
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:36:12.675913 2026] [security2:error] [pid 29668:tid 29684] [client 172.71.190.95:10281] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.east-lease.com"] [uri "/.git/config"] [unique_id "aoKdzA_BaMAqkf6y1gO8WwAAAUA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:35:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:35:05.153118 2026] [security2:error] [pid 29997:tid 29997] [client 172.71.190.95:12855] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.pdonato.com"] [uri "/.git/config"] [unique_id "aoFoKfkjVVgR6Ah6DF0mJQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:22:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:21:58.013413 2026] [security2:error] [pid 3967:tid 3967] [client 172.71.190.95:9544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.firewoodart.com"] [uri "/.git/HEAD"] [unique_id "aoFXBvqP5B7tpW2FYHC0EwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:07:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:06:53.237581 2026] [security2:error] [pid 21565:tid 21565] [client 172.71.190.95:12578] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.neconebooks.com"] [uri "/.git/HEAD"] [unique_id "aoFFbS083__rOQqNvDA5xAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 03:11:39
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 23:11:32.947838 2026] [security2:error] [pid 2183042:tid 2183042] [client 172.71.190.95:10119] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.apfarrell.com"] [uri "/.git/HEAD"] [unique_id "anvkZGEVM7vzCzXjaekYrAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-10 02:44:19
(1 month ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-20 00:33:54
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-29 12:11:34
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฌ๐ง
Axel
2026-05-17 01:28:03
(4 months ago)
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env Server: ...
show more
Blocked by ModSecurity. Rule ID: 210492 Message: None Phase: 1 Severity: CRITICAL URI: /.env Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ธ
TPI-Abuse
2026-05-15 12:12:09
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.190.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 08:12:02.075449 2026] [security2:error] [pid 9582:tid 9582] [client 172.71.190.95:13725] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lajoze.com"] [uri "/.env"] [unique_id "agcNkherCWJGOdyOPnOQCQAAAA4"], referer: https://www.google.com/search?q=webmail.lajoze.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-14 22:07:18
(4 months ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-05-13.
show less
Web App Attack
SSH
Hacking