πΊπΈ
TPI-Abuse
2026-08-26 10:34:34
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:34:25.830190 2026] [security2:error] [pid 21640:tid 21725] [client 172.71.232.131:12895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafmindia.aafm.us"] [uri "/.git/HEAD"] [unique_id "ao7BMQe91oc6NgSbfK_c2gAAAYk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 02:59:22
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 22:59:18.409776 2026] [security2:error] [pid 17216:tid 17216] [client 172.71.232.131:12602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.larrybridwell.com"] [uri "/.git/config"] [unique_id "ao5WhilWQPMb7dmORG6cCAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 01:03:31
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 21:03:25.355204 2026] [security2:error] [pid 11078:tid 11078] [client 172.71.232.131:11367] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.cgautomatizacion.com"] [uri "/.git/HEAD"] [unique_id "ao47XZhI3pDGPhXHeNxIfAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
ipblock.com
2026-08-25 07:17:00
(1 day ago)
Bad agent, site scraper bot [s].
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-25 03:07:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 23:07:00.336583 2026] [security2:error] [pid 9679:tid 9679] [client 172.71.232.131:10181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.myomni.us"] [uri "/.git/HEAD"] [unique_id "ao0G1PK9YNguXolwJKKKyAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 14:12:56
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 10:12:50.983901 2026] [security2:error] [pid 20069:tid 20069] [client 172.71.232.131:12126] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.levijoneslegal.com"] [uri "/.git/HEAD"] [unique_id "aoxRYoZECiW2OvaFSwPN_gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
4server
2026-08-24 13:20:05
(2 days ago)
[MonAug2415:19:59.4950932026][security2:error][pid1096835:tid1096904][client172.71.232.131:0]ModSecu ...
show more
[MonAug2415:19:59.4950932026][security2:error][pid1096835:tid1096904][client172.71.232.131:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"mail.ci-ticino.ch\"][uri\"/.git/HEAD\"][unique_id\"aoxE_2EKn3BXBnST-k5ZTgAAAE8\"]
show less
Port Scan
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 09:35:42
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 05:35:36.828516 2026] [security2:error] [pid 12855:tid 12855] [client 172.71.232.131:12221] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.go-901.com"] [uri "/.git/config"] [unique_id "aowQaEyJ39dCE2ttP9vuPAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 05:31:01
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 01:30:53.884847 2026] [security2:error] [pid 7175:tid 7175] [client 172.71.232.131:12302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mentalmolecule.theknowledgemaster.com"] [uri "/.git/config"] [unique_id "aovXDZ31SwERpFLhffalhAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 20:56:45
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 16:56:38.649884 2026] [security2:error] [pid 12647:tid 12647] [client 172.71.232.131:11974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tecnoconce.tecnoconce.com"] [uri "/.git/config"] [unique_id "aooNBm8GW5z1x3_-o3KpuQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-22 14:15:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:15:50.805757 2026] [security2:error] [pid 4573:tid 4573] [client 172.71.232.131:10659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.321q.com"] [uri "/.git/HEAD"] [unique_id "aomvFn6DfRKuJX3heS7CWwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-08-22 11:45:46
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
πΊπΈ
daveoctober
2026-08-22 09:46:17
(4 days ago)
October Sentinel: honeypot triggered
Bad Web Bot
Web App Attack
πΊπΈ
MPL
2026-08-22 07:04:20
(4 days ago)
tcp/443 (8 or more attempts)
Port Scan
πΊπΈ
TPI-Abuse
2026-08-22 05:40:17
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.131 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:40:12.313114 2026] [security2:error] [pid 5056:tid 5056] [client 172.71.232.131:10509] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.gemco-mfg.com"] [uri "/.git/HEAD"] [unique_id "aok2PMRtIFLKAWoUDhLxQgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack