๐ซ๐ท
Lino Project
2026-08-30 04:42:20
(10 hours ago)
172.71.232.99 - - [30/Aug/2026:06:42:19 +0200] "GET /.git/HEAD HTTP/1.1" 302 5842 "-" "Mozilla/5.0 ( ...
show more
172.71.232.99 - - [30/Aug/2026:06:42:19 +0200] "GET /.git/HEAD HTTP/1.1" 302 5842 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
172.71.232.99 - - [30/Aug/2026:06:42:19 +0200] "GET /.git/config HTTP/1.1" 302 5830 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 04:33:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 00:33:39.358303 2026] [security2:error] [pid 10231:tid 10243] [client 172.71.232.99:9642] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gelatoconsapevole.com"] [uri "/.git/HEAD"] [unique_id "apJhIzrIoopy7jD5-klLuAAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 03:09:14
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 23:09:10.809622 2026] [security2:error] [pid 20472:tid 20472] [client 172.71.232.99:10491] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.sporttaekwondo.net"] [uri "/.git/HEAD"] [unique_id "apJNVkerlbpj7lWcRG2GpwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-29 00:38:35
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
4server
2026-08-28 21:20:13
(1 day ago)
[FriAug2823:20:09.1789992026][security2:error][pid3193455:tid3193520][client172.71.232.99:0]ModSecur ...
show more
[FriAug2823:20:09.1789992026][security2:error][pid3193455:tid3193520][client172.71.232.99:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.domoticaswiss.ch\"][uri\"/.git/HEAD\"][unique_id\"apH7icubvS9AFgYQNW8ReQAAAIA\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 17:23:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 13:23:06.923874 2026] [security2:error] [pid 24297:tid 24297] [client 172.71.232.99:13088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.lucid-hq.com"] [uri "/.git/HEAD"] [unique_id "apHD-nnvg0bOBM7a_iTN6gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:32:07
(2 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-27 12:08:44
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:08:40.017253 2026] [security2:error] [pid 14285:tid 14285] [client 172.71.232.99:11746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thecrimsonpirate.com"] [uri "/.git/config"] [unique_id "apAoyAOOZBLk_JUrfXBWDAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 04:28:04
(3 days ago)
172.71.232.99 arduino.ua [27/Aug/2026:07:28:04 +0300] "GET /.git/HEAD HTTP/2.0" 403 548 "-" "Mozilla ...
show more
172.71.232.99 arduino.ua [27/Aug/2026:07:28:04 +0300] "GET /.git/HEAD HTTP/2.0" 403 548 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" 0.000 2388
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 13:53:14
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:53:09.582511 2026] [security2:error] [pid 51376:tid 51397] [client 172.71.232.99:12502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.exedesalesteam.com"] [uri "/.git/config"] [unique_id "ao7vxdhqs7pLkRqv5tsgFgAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:46:55
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:46:51.315116 2026] [security2:error] [pid 30843:tid 30843] [client 172.71.232.99:12162] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.doctorc.net"] [uri "/.git/HEAD"] [unique_id "ao7EG4CXbjzDH_jjm-2j9QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 20:37:22
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 16:37:17.580956 2026] [security2:error] [pid 1256:tid 1256] [client 172.71.232.99:11499] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.buggyshop.org"] [uri "/.git/HEAD"] [unique_id "ao38_ZGs6msqLL28duz1TQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:08:15
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:08:11.134574 2026] [security2:error] [pid 31634:tid 31634] [client 172.71.232.99:12160] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.notepromd.com"] [uri "/.git/HEAD"] [unique_id "ao2hy9wewZvmQVxnOfjQ-gAAACY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 09:54:19
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.232.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 05:54:14.910185 2026] [security2:error] [pid 6689:tid 6689] [client 172.71.232.99:13552] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.thegoldreserve.com"] [uri "/.git/config"] [unique_id "ao1mRlIgYszQgqYxCVNG6wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-25 01:40:52
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack