Anonymous
2026-09-13 11:58:43
(3 days ago)
172.71.194.251 - - [13/Sep/2026:13:58:41 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 40 ...
show more
172.71.194.251 - - [13/Sep/2026:13:58:41 +0200] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.71.194.251 - - [13/Sep/2026:13:58:41 +0200] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.71.194.251 - - [13/Sep/2026:13:58:42 +0200] "GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.71.194.251 - - [13/Sep/2026:13:58:42 +0200] "GET //2019/wp-includes/wlwmanifest.xml HTTP/1.1" 404 184 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
172.71.194.251 - - [13/Sep/2026:13:58:43 +0200] "GET //2021/wp-includes/wlwmanifest.xml HTTP/1.
...
show less
Brute-Force
Web App Attack
๐ซ๐ท
LoneRider
2026-09-13 11:00:39
(3 days ago)
[13/Sep/2026:13:00:37.724741 +0200] aqaCVc4QMVD7XobO7EZMGgAAAAU 172.71.194.251 37394 127.0.0.1 7081
...
show more
[13/Sep/2026:13:00:37.724741 +0200] aqaCVc4QMVD7XobO7EZMGgAAAAU 172.71.194.251 37394 127.0.0.1 7081
[13/Sep/2026:13:00:38.065154 +0200] aqaCVu9GONNWeffWMDtEvQAAAAQ 172.71.194.251 37516 127.0.0.1 7081
[13/Sep/2026:13:00:38.086602 +0200] aqaCVo--iosjd01bOe6tVgAAAAE 172.71.194.251 37528 127.0.0.1 7081
...
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 23:43:44
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 19:43:36.519517 2026] [security2:error] [pid 21188:tid 21207] [client 172.71.194.251:12524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.officialseniorworldgolfranking.com"] [uri "/.git/config"] [unique_id "aoOcqMqNrMH-sfoz3fSIUgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:29:44
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:29:39.206616 2026] [security2:error] [pid 10258:tid 10258] [client 172.71.194.251:12115] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.afjm.net"] [uri "/.git/HEAD"] [unique_id "aoMMw70NlSQzAwb-WDJ-ZgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-17 13:04:18
(4 weeks ago)
[MonAug1715:04:14.4845532026][security2:error][pid1739686:tid1739689][client172.71.194.251:0]ModSecu ...
show more
[MonAug1715:04:14.4845532026][security2:error][pid1739686:tid1739689][client172.71.194.251:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.agilityrossoblu.ch\"][uri\"/.git/HEAD\"][unique_id\"aoMGzv0XMkfX3QUheVg4VwAAAMA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:41:50
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:41:41.879328 2026] [security2:error] [pid 16768:tid 16768] [client 172.71.194.251:12623] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.register-yacht-st-vincent-grenadines.com"] [uri "/.git/HEAD"] [unique_id "aoLJRU929VPRZa1jPYU9UgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:08:08
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:08:02.886296 2026] [security2:error] [pid 1602:tid 1602] [client 172.71.194.251:12891] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.codenames.liftreading.com"] [uri "/.git/HEAD"] [unique_id "aoLBYuPEmYdvSQIIwwUx7wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-08-15 04:28:10
(1 month ago)
Wordpress malicious attack:[octablocked]
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 18:06:20
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 14:06:16.479729 2026] [security2:error] [pid 3801642:tid 3801642] [client 172.71.194.251:12350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.maunakeavista.com"] [uri "/.git/HEAD"] [unique_id "antkmARhJNjG3v_5rxQsrgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 11:20:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.251 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 07:20:04.804552 2026] [security2:error] [pid 3267968:tid 3267968] [client 172.71.194.251:13230] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.doubleandup.com"] [uri "/.git/config"] [unique_id "ansFZOnakYy7fB4CgVJw_wAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-09 22:42:19
(1 month ago)
Web App Attack
๐บ๐ธ
mawan
2026-08-05 15:43:37
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-07-26 20:34:05
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-07-25 11:16:24
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-07-17 11:36:12
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack