π§πͺ
madeit
2026-09-12 11:18:41
(2 weeks ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 05:21:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:21:09.704844 2026] [security2:error] [pid 7497:tid 7497] [client 172.71.223.139:13354] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.wakims.com"] [uri "/.git/config"] [unique_id "aoKaRdr0rr_Dwn7nybS48AAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Herrminator
2026-08-17 03:27:02
(1 month ago)
tjpi04.johler.ph 172.71.223.139 - - [17/Aug/2026:05:26:59 +0200] "GET /.git/HEAD HTTP/2.0" 301 169 " ...
show more
tjpi04.johler.ph 172.71.223.139 - - [17/Aug/2026:05:26:59 +0200] "GET /.git/HEAD HTTP/2.0" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" "87.173.247.207:80"
tjpi04.johler.ph 172.71.223.139 - - [17/Aug/2026:05:27:00 +0200] "GET /.git/HEAD HTTP/2.0" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" "87.173.247.207:80"
tjpi04.johler.ph 172.71.223.139 - - [17/Aug/2026:05:27:00 +0200] "GET /.git/config HTTP/2.0" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" "87.173.247.207:80"
tjpi04.johler.ph 172.71.223.139 - - [17/Aug/2026:05:27:00 +0200] "GET /.git/HEAD HTTP/2.0" 301 169 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" "87.173.247.207:80"
tjpi04.johler.ph 172.71.22
...
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 23:56:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 19:56:10.837659 2026] [security2:error] [pid 7148:tid 7148] [client 172.71.223.139:11692] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "britanniapilates.com"] [uri "/.git/HEAD"] [unique_id "aoJOGol7GyHcV31ldZZIDQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 10:15:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:15:09.774962 2026] [security2:error] [pid 32144:tid 32144] [client 172.71.223.139:12767] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "blfmarine.com.lakesidedetectiveagency.com"] [uri "/.git/config"] [unique_id "aoGNrTbK_Riwm-jXpRovkgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 03:48:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:48:01.895398 2026] [security2:error] [pid 3763:tid 3763] [client 172.71.223.139:12453] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.vividlee.com"] [uri "/.git/config"] [unique_id "aoEy8XxQsmDcafHR371chgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-12 13:12:12
(1 month ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-11 02:14:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 22:13:58.304615 2026] [security2:error] [pid 1305408:tid 1305431] [client 172.71.223.139:13246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pueblodermatology.com"] [uri "/.git/config"] [unique_id "anqFZjfHrwWfhIEh4JRYtwAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 21:04:31
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 17:04:24.317097 2026] [security2:error] [pid 22964:tid 22964] [client 172.71.223.139:12119] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gayebrown.tulsatvmemories.com"] [uri "/.env.bak"] [unique_id "adArWIcDJV-jxnFdVDS6EAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 20:37:22
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 16:37:14.767914 2026] [security2:error] [pid 11477:tid 11477] [client 172.71.223.139:10515] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.magusniche.com"] [uri "/srv/.env"] [unique_id "adAk-pwF0K8q0u4BbO9wbQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 15:28:51
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 11:28:45.824947 2026] [security2:error] [pid 401:tid 401] [client 172.71.223.139:12418] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.leadek.com"] [uri "/.env2"] [unique_id "ac_cra4X8skuZ0_ApA6Q6wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 15:09:23
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 11:09:17.020020 2026] [security2:error] [pid 24651:tid 24651] [client 172.71.223.139:13569] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.clossglobal.com"] [uri "/.env.php"] [unique_id "ac_YHSw5goSNNdZ6vLBk-gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 13:28:00
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 09:27:53.033835 2026] [security2:error] [pid 13597:tid 13597] [client 172.71.223.139:13113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test.handyrehab.com"] [uri "/.env.development"] [unique_id "ac_AWfeRVi5CG_4s-9vI1gAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 02:51:23
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 22:51:16.313773 2026] [security2:error] [pid 17112:tid 17112] [client 172.71.223.139:13918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.longacre.biz"] [uri "/.env.production"] [unique_id "ac8rJE06AHTpczw7frKtCQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-04-03 01:15:11
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.139 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 21:15:04.896365 2026] [security2:error] [pid 3028:tid 3028] [client 172.71.223.139:10368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.davidnevue.com"] [uri "/app/.env"] [unique_id "ac8UmNIF7yvj4-9yHTyyjAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack