๐ฎ๐น
A000Z
2026-09-04 06:07:42
(5 days ago)
Fail2Ban: 172.71.232.73 was banned for Aggressive Bad Bot detected by Nginx/Fail2Ban. UA: curl/8.4.0
Bad Web Bot
Anonymous
2026-09-02 04:53:04
(1 week ago)
172.71.232.73 - - [02/Sep/2026:06:53:01 +0200] "GET /%2egit/config HTTP/1.1" 403 124 "-" "curl/8.7.1 ...
show more
172.71.232.73 - - [02/Sep/2026:06:53:01 +0200] "GET /%2egit/config HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:01 +0200] "GET /srv/%2eenv HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:01 +0200] "GET /app/etc/local%2exml HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:01 +0200] "GET /%2egit/HEAD HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:01 +0200] "GET /%2egit/logs/HEAD HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:02 +0200] "GET /%2egit/logs/refs/heads/master HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:02 +0200] "GET /%2egit/logs/refs/remotes/origin/master HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:02 +0200] "GET /%2egit/logs/refs/remotes/origin/main HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [02/Sep/2026:06:53:02 +0200] "GET /%2egit/info/exclude HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.2
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
Thaliruth
2026-09-01 19:58:18
(1 week ago)
[01/Sep/2026:21:58:17.977490 +0200] apcuWRjomsMP7mcyiEoLQwAAAJI 172.71.232.73 59440 127.0.0.1 7081
. ...
show more
[01/Sep/2026:21:58:17.977490 +0200] apcuWRjomsMP7mcyiEoLQwAAAJI 172.71.232.73 59440 127.0.0.1 7081
...
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 19:10:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 15:09:54.237899 2026] [security2:error] [pid 11079:tid 11079] [client 172.71.232.73:10123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "accordionclub.org"] [uri "/.git/HEAD"] [unique_id "apXRgi8bIOOAOiJiv_8QwgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:56:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:56:00.636956 2026] [security2:error] [pid 21470:tid 21476] [client 172.71.232.73:11948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cspmedia.com"] [uri "/.git/HEAD"] [unique_id "apVdwLdL5yVXANojQV3YRQAAAUQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 22:49:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 18:49:54.789467 2026] [security2:error] [pid 3455:tid 3455] [client 172.71.232.73:11699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jeffreycopeland.com"] [uri "/.git/HEAD"] [unique_id "apIQks1vMJBIaHxBhbbctgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 20:19:56
(1 week ago)
172.71.232.73 - - [28/Aug/2026:22:19:42 +0200] "GET /.vercel/output/static HTTP/1.1" 403 124 "-" "cu ...
show more
172.71.232.73 - - [28/Aug/2026:22:19:42 +0200] "GET /.vercel/output/static HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:53 +0200] "GET /.next/server/ HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /.next/server/app/ HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /.next/server/pages/ HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /.php HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /.vercel/output/ HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /.vercel/output/functions/ HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /.vercel/output/static/ HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0200] "GET /:2375/containers/json HTTP/1.1" 403 124 "-" "curl/8.7.1"
172.71.232.73 - - [28/Aug/2026:22:19:54 +0
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 09:28:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:28:28.172252 2026] [security2:error] [pid 743693:tid 744411] [client 172.71.232.73:10159] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.360degreevalue.com"] [uri "/.git/HEAD"] [unique_id "apFUvMC5hovT9753mWaTNgAAAQk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-28 08:34:17
(1 week ago)
[FriAug2810:34:13.5977332026][security2:error][pid609521:tid609636][client172.71.232.73:0]ModSecurit ...
show more
[FriAug2810:34:13.5977332026][security2:error][pid609521:tid609636][client172.71.232.73:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"www.xn--walter-wrndli-pmb.ch\"][uri\"/.git/HEAD\"][unique_id\"apFIBVRCNq43FG2_sD5p6gAAAEc\"]
show less
Hacking
Web App Attack
๐ง๐ช
voormedia
2026-08-27 14:01:02
(1 week ago)
Accessed trap at '/.git/HEAD'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:07:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:07:50.106121 2026] [security2:error] [pid 9846:tid 9846] [client 172.71.232.73:12909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "encoreporchfest.info"] [uri "/.git/HEAD"] [unique_id "apAolkjlCUUVUVdcfhYfLAAAAE4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 18:36:12
(2 weeks ago)
GET /.git/HEAD HTTP/1.1
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:35:48
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:35:41.970453 2026] [security2:error] [pid 11217:tid 11217] [client 172.71.232.73:9961] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.justiniggercom.indie100.com"] [uri "/.git/HEAD"] [unique_id "ao6JPcWdddLhtEZ5OE4HOQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 04:34:15
(2 weeks ago)
Http Port:80 (http_status:403) - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/201 ...
show more
Http Port:80 (http_status:403) - Agent:Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 21:34:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.73 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:33:59.463061 2026] [security2:error] [pid 20120:tid 20120] [client 172.71.232.73:11107] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.knoxbestos.com"] [uri "/.git/config"] [unique_id "ao4KR7bvF7ydEstFWQYDXwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack