๐บ๐ธ
TPI-Abuse
2026-09-02 10:46:20
(10 minutes ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:46:11.411927 2026] [security2:error] [pid 30129:tid 30129] [client 172.71.232.2:10941] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hatfulofrain.com"] [uri "/.git/config"] [unique_id "apf-c8ck373GR4NvIzGrCQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-30 17:50:37
(2 days ago)
Web App Attack
๐จ๐ญ
4server
2026-08-30 00:01:13
(3 days ago)
[SunAug3002:01:09.2601672026][security2:error][pid4049410:tid4050409][client172.71.232.2:0]ModSecuri ...
show more
[SunAug3002:01:09.2601672026][security2:error][pid4049410:tid4050409][client172.71.232.2:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cadvending.ch\"][uri\"/.git/HEAD\"][unique_id\"apNyxUzzW327DLrXwyfneQAAAAY\"]
show less
Hacking
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-29 20:28:52
(3 days ago)
cloudlinux2 fail2ban: 2026-08-29 22:24:00,336 fail2ban.filter [1478]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-08-29 22:24:00,336 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 201.216.166.23 - 2026-08-29 22:24:00cloudlinux2 fail2ban: 2026-08-29 22:24:18,954 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 45.132.227.51 - 2026-08-29 22:24:18cloudlinux2 fail2ban: 2026-08-29 22:24:30,335 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 5.183.252.51 - 2026-08-29 22:24:29cloudlinux2 fail2ban: 2026-08-29 22:24:40,981 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 91.193.232.66 - 2026-08-29 22:24:40cloudlinux2 fail2ban: 2026-08-29 22:25:03,870 fail2ban.filter [1478]: INFO [plesk-wordpress] Found 216.24.219.133 - 2026-08-29 22:25:03cloudlinux2 fail2ban: 2026-08-29 22:25:50,303 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 172.71.232.2 - 2026-08-29 22:25:50cloudlinux2 fail2ban: 2026-08-29 22:25:51,918 fail2ban.filter [1478]: INFO [plesk-modsecurity] Found 201.216.166.23 - 2026-08-29 22:25:51cl
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:28:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:28:43.720144 2026] [security2:error] [pid 2278205:tid 2278257] [client 172.71.232.2:12122] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "layoverlocations.com"] [uri "/.git/config"] [unique_id "apAte-KMkSny_ZVB3hf9wQAAAZA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐ฑ
router.al
2026-08-26 21:45:27
(6 days ago)
08/26/2026-21:45:27.500391 172.71.232.2 Protocol: 6 ET WEB_SPECIFIC_APPS WordPress Plugin Gravity SM ...
show more
08/26/2026-21:45:27.500391 172.71.232.2 Protocol: 6 ET WEB_SPECIFIC_APPS WordPress Plugin Gravity SMTP Unauthenticated REST API (CVE-2026-4020)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-26 04:45:09
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:45:05.112514 2026] [security2:error] [pid 23521:tid 23521] [client 172.71.232.2:10562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.catzpaw.com"] [uri "/.git/config"] [unique_id "ao5vUVBn1FrcDjwUB-N2aQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-08-26 01:19:42
(1 week ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:17:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:17:20.184331 2026] [security2:error] [pid 29539:tid 29539] [client 172.71.232.2:11793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.intrialconsultants.com"] [uri "/.git/config"] [unique_id "aoxggLvSsLsyR9ozocs0CAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 13:50:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:50:01.099596 2026] [security2:error] [pid 8113:tid 8113] [client 172.71.232.2:9505] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.virtualmediamasters.net"] [uri "/.git/HEAD"] [unique_id "aoxMCa1puwCVMxtcVqOamwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 00:40:18
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 20:40:13.073131 2026] [security2:error] [pid 1534:tid 1534] [client 172.71.232.2:12245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.christianbroadcastingleague.com"] [uri "/.git/HEAD"] [unique_id "aouS7RwbBvrG1oHirQPdTgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-23 22:00:23
(1 week ago)
Auto-ban: >3000 req/min op 2026-08-23
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-23 07:34:48
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 03:34:42.005949 2026] [security2:error] [pid 25620:tid 25620] [client 172.71.232.2:12903] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.techskill.net"] [uri "/.git/HEAD"] [unique_id "aoqikltwxPeGeZH8Fl7yFwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 18:21:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 14:21:14.670669 2026] [security2:error] [pid 27276:tid 27276] [client 172.71.232.2:12165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.fgrotary.org"] [uri "/.git/HEAD"] [unique_id "aonommbRPBU55v_DQM31jwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 07:59:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.2 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 03:59:20.081590 2026] [security2:error] [pid 21683:tid 21683] [client 172.71.232.2:13419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mena365.gulftelecom.com"] [uri "/.git/config"] [unique_id "aolW2F0mEJOXa3UX2NCH_AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack