๐จ๐ฆ
polycoda
2026-09-28 15:20:20
(1 day ago)
โจ๏ธ Probes for phpinfo everywhere
Hacking
Web App Attack
๐ง๐ช
madeit
2026-09-02 02:11:30
(4 weeks ago)
Web App Attack
Anonymous
2026-08-18 16:31:21
(1 month ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-18 02:24:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:24:51.809367 2026] [security2:error] [pid 512:tid 512] [client 172.71.223.47:12220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mountararattrek.com"] [uri "/.git/HEAD"] [unique_id "aoPCc8H976qfVfmLiWZ8iAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-16 22:01:26
(1 month ago)
Auto-ban: >3000 req/min op 2026-08-16
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-16 05:08:15
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:08:10.549020 2026] [security2:error] [pid 24604:tid 24604] [client 172.71.223.47:10177] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.brenna-droege.com"] [uri "/.git/HEAD"] [unique_id "aoFFupja1mEz1AjpskafdwAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-15 08:33:29
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 08:10:41
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 04:10:34.818504 2026] [security2:error] [pid 2525319:tid 2525319] [client 172.71.223.47:11573] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cyber-matrix.org"] [uri "/.git/HEAD"] [unique_id "an17-mvGjWFoVUykmvsAAQAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-25 19:36:28
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 15:36:23.232389 2026] [security2:error] [pid 14006:tid 14006] [client 172.71.223.47:11856] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smarthome.varnadorefamily.com"] [uri "/.env.dev"] [unique_id "ahSkt23K0v3JYpdPqXVwvQAAAAk"], referer: https://www.google.com/search?q=smarthome.varnadorefamily.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 04:20:15
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 00:20:07.637018 2026] [security2:error] [pid 23655:tid 23655] [client 172.71.223.47:11151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.piperbrian.com"] [uri "/.env.staging"] [unique_id "adCRd0IoiiPz9r2yYQgGiQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 01:31:36
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 21:31:31.551887 2026] [security2:error] [pid 5527:tid 5527] [client 172.71.223.47:11113] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cageliners.net"] [uri "/public/.env"] [unique_id "adBp80TDYPbUf08D4I5aTAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 20:33:02
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 16:32:58.744519 2026] [security2:error] [pid 8898:tid 8898] [client 172.71.223.47:11016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.magusniche.com"] [uri "/.git/refs/heads/main"] [unique_id "adAj-nZbEJdaTSt-rJKNvQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 05:46:32
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 01:46:29.185378 2026] [security2:error] [pid 28356:tid 28356] [client 172.71.223.47:9705] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.yanlidesign.com"] [uri "/.env1"] [unique_id "ac9UNR236cupr55DM8QH0gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 01:56:42
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 21:56:35.909984 2026] [security2:error] [pid 9771:tid 9792] [client 172.71.223.47:13541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.bestofthis.com"] [uri "/.env.dev"] [unique_id "ac8eU4S09QpnQj98NhmSdQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-02 22:11:18
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.223.47 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Apr 02 18:11:11.536444 2026] [security2:error] [pid 26182:tid 26182] [client 172.71.223.47:10187] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.deepseasugar.com"] [uri "/.env.json"] [unique_id "ac7pf4vTgHfQom8sJ3sLBwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack