๐บ๐ธ
TPI-Abuse
2026-08-27 03:05:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:05:03.107600 2026] [security2:error] [pid 16994:tid 16994] [client 172.71.232.163:11343] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.saletrender.com"] [uri "/.git/config"] [unique_id "ao-pX-fQScaUafwsL3Mh7QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 15:36:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 11:36:49.344531 2026] [security2:error] [pid 51450:tid 51475] [client 172.71.232.163:12947] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cowboys.seips.org"] [uri "/.git/config"] [unique_id "ao8IEQ5IujEbOVUlEFqXQgAAAJE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
ne1for23
2026-08-26 14:58:40
(1 day ago)
Attempting to probe for sensitive information accidently exposed via git config.
172.71.232.163 - - ...
show more
Attempting to probe for sensitive information accidently exposed via git config.
172.71.232.163 - - [26/Aug/2026:14:58:40 +0000] "GET /.git/config HTTP/2.0" 403 153 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-26 12:39:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 08:39:47.039429 2026] [security2:error] [pid 30055:tid 30055] [client 172.71.232.163:9442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.evelynkay.com"] [uri "/.git/HEAD"] [unique_id "ao7ek4kIl4eXO4nzel21jAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 03:59:26
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 23:59:19.314743 2026] [security2:error] [pid 9778:tid 9778] [client 172.71.232.163:9922] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.jrpiano.com"] [uri "/.git/config"] [unique_id "ao5kl50LpMmtvToMlN8UkAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 02:19:28
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 22:19:21.695385 2026] [security2:error] [pid 12088:tid 12088] [client 172.71.232.163:11163] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.bikiniadvice.com"] [uri "/.git/HEAD"] [unique_id "ao5NKTEMsDaR2iZ94X_aSgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 21:00:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:00:14.793215 2026] [security2:error] [pid 28437:tid 28522] [client 172.71.232.163:9869] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.deathbyaudio.killerrockandroll.com"] [uri "/.git/config"] [unique_id "ao4CXpBSKarsjwmENlhcoQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
joharikop
2026-08-25 07:57:50
(2 days ago)
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-cred ...
show more
Nginx: credential/secret file probe (/.env, /.git, /.aws etc). Automated ban via fail2ban nginx-credential-probes jail.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 02:57:26
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 22:57:18.474208 2026] [security2:error] [pid 32467:tid 32467] [client 172.71.232.163:12982] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.frenosilent.com.ar"] [uri "/.git/config"] [unique_id "ao0EjmEoEeYTaHJxbapcjAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-24 17:43:44
(3 days ago)
[MonAug2419:43:38.9380892026][security2:error][pid322191:tid323307][client172.71.232.163:0]ModSecuri ...
show more
[MonAug2419:43:38.9380892026][security2:error][pid322191:tid323307][client172.71.232.163:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpcontacts.buonviaggio.ch\"][uri\"/.git/HEAD\"][unique_id\"aoyCyshcolAhFug5xMK-OQAAAFE\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 08:46:06
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 04:46:02.010506 2026] [security2:error] [pid 8518:tid 8518] [client 172.71.232.163:13160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.agribrokers.net"] [uri "/.git/HEAD"] [unique_id "aowEyiFI-rJzSU2vs0UOmgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:19:31
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:19:26.022486 2026] [security2:error] [pid 31996:tid 31996] [client 172.71.232.163:11010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gslandservices.com"] [uri "/.git/HEAD"] [unique_id "aovibjpDQZqdpFEOsUYBbQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 08:54:53
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 04:54:45.697171 2026] [security2:error] [pid 20451:tid 20451] [client 172.71.232.163:12875] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.4115thewestford.com"] [uri "/.git/config"] [unique_id "aoq1VfQm4iZZl3FKhuiLuQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 01:24:38
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 21:24:33.699302 2026] [security2:error] [pid 23057:tid 23079] [client 172.71.232.163:10983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.randycameron.com"] [uri "/.git/config"] [unique_id "aopL0eYnVGG3hxyfAvqW9gAAAIo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 00:29:21
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.163 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 20:29:16.537171 2026] [security2:error] [pid 3069:tid 3069] [client 172.71.232.163:13022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cidv.com"] [uri "/.git/HEAD"] [unique_id "aoo-3AITlO9FQc3sqsG2yQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack