Anonymous
2026-08-30 18:05:14
(1 day ago)
172.71.194.30 - - [30/Aug/2026:15:05:13 -0300] "GET /.git/HEAD HTTP/2.0" 444 0 "-" "Mozilla/5.0 (Win ...
show more
172.71.194.30 - - [30/Aug/2026:15:05:13 -0300] "GET /.git/HEAD HTTP/2.0" 444 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:137.0) Gecko/20100101 Firefox/137.0"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-17 09:46:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:46:35.465190 2026] [security2:error] [pid 29189:tid 29189] [client 172.71.194.30:12279] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.coretermite.com"] [uri "/.git/HEAD"] [unique_id "aoLYe6Rw-OERyhe9AT2ohwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-17 09:08:47
(2 weeks ago)
[MonAug1711:08:45.1279872026][security2:error][pid2765047:tid2765072][client172.71.194.30:0]ModSecur ...
show more
[MonAug1711:08:45.1279872026][security2:error][pid2765047:tid2765072][client172.71.194.30:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"465\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.hosting-domain-swiss-com.ticino-hosting.ch\"][uri\"/.git/config\"][unique_id\"aoLPnfEMwNkq7CKQtS1qZwAAAQg\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:43:44
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:43:36.931476 2026] [security2:error] [pid 32652:tid 305] [client 172.71.194.30:12151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.howlerrock.com"] [uri "/.git/HEAD"] [unique_id "aoLJuDyN40k1TlUaM4n9AgAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:05:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:05:37.920504 2026] [security2:error] [pid 8213:tid 8213] [client 172.71.194.30:10761] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.siouxfallslimos.com"] [uri "/.git/config"] [unique_id "aoLA0dr9NTCCR26Z7UWfUAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 10:59:24
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:59:19.704040 2026] [security2:error] [pid 18476:tid 18476] [client 172.71.194.30:12431] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.clarktec.com"] [uri "/.git/HEAD"] [unique_id "aoGYB_CP0sWN92LCsIvUEAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 04:57:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:57:28.205529 2026] [security2:error] [pid 20243:tid 20243] [client 172.71.194.30:12975] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.oshkoshvolleyball.com"] [uri "/.git/config"] [unique_id "aoFDOCjexEEo-FMiN5DS5gAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 19:38:32
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 15:38:25.261437 2026] [security2:error] [pid 2234170:tid 2234170] [client 172.71.194.30:13137] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "networkzone.org"] [uri "/.git/config"] [unique_id "an4dMcX5OXnNyme8PkxCbQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-09 05:11:20
(3 weeks ago)
Web App Attack
Anonymous
2026-03-28 09:19:37
(5 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 13:45:33
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:45:24.773627 2026] [security2:error] [pid 24797:tid 24823] [client 172.71.194.30:14191] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.metastrata.com"] [uri "/api/.env"] [unique_id "acaJ9BCHopiitM-fLN9w_wAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 13:19:12
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 09:19:04.306232 2026] [security2:error] [pid 9314:tid 9314] [client 172.71.194.30:11827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cyberviews.club"] [uri "/.envrc"] [unique_id "acaDyC7AS-HYtsGTuoaC3AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 12:40:22
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 08:40:16.634487 2026] [security2:error] [pid 11903:tid 11930] [client 172.71.194.30:13612] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.charteredfinancialmanager.com"] [uri "/.env.tmp"] [unique_id "acZ6sCZDrO3EpI1l6d6JrgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 14:59:06
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 10:58:47.187313 2026] [security2:error] [pid 20536:tid 20536] [client 172.71.194.30:12434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.secuencia.com"] [uri "/.env_settings"] [unique_id "acVJpyBkoXsSWnloBycKyAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 14:01:09
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.194.30 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 10:00:40.188558 2026] [security2:error] [pid 14708:tid 14708] [client 172.71.194.30:10734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.crescentcitycafe.org"] [uri "/config/.env.local"] [unique_id "acU8CE-g5IsKfV7Jhh7qkwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack