๐ฑ๐บ
conseilgouz
2026-09-13 00:56:20
(52 minutes ago)
are-17 : Block hidden directories=>/.git/config(/)
Hacking
๐บ๐ธ
MPL
2026-09-08 16:20:38
(4 days ago)
tcp/443 (5 or more attempts)
Port Scan
๐ง๐ช
madeit
2026-08-27 20:38:56
(2 weeks ago)
Web App Attack
๐ง๐ช
madeit
2026-08-19 13:23:53
(3 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:08:46
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:08:41.640395 2026] [security2:error] [pid 8094:tid 8094] [client 172.71.81.214:12854] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.cyber-matrix.org"] [uri "/.git/HEAD"] [unique_id "aoKXWYUYc-fW32tanf3HJQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 04:40:55
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 00:40:51.109762 2026] [security2:error] [pid 13682:tid 13682] [client 172.71.81.214:12860] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.gooch-excavation.com"] [uri "/.git/HEAD"] [unique_id "aoKQ07H8JCZTS1wTtulZCAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:34:22
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:34:15.972105 2026] [security2:error] [pid 11139:tid 11245] [client 172.71.81.214:10848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.writeonce.org"] [uri "/.git/HEAD"] [unique_id "aoJXB3tlcMtAbgUWn8sNXwAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-07-10 04:24:58
(2 months ago)
Wordpress malicious attack:[octawp]
Web App Attack
๐บ๐ธ
wimaxnz
2026-06-13 04:02:51
(2 months ago)
Automated report from 247 Guardian: repeated malicious activity detected. | reason=nginx_badpath
Brute-Force
SSH
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-14 00:32:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 20:31:57.817123 2026] [security2:error] [pid 18448:tid 18448] [client 172.71.81.214:11176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.bidsonlineauctions.com"] [uri "/.env~"] [unique_id "agUX_T94MFCNU40rb0_mXQAAAAw"], referer: https://www.google.com/search?q=cpanel.bidsonlineauctions.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-11 22:01:07
(4 months ago)
Auto-ban: >3000 req/min op 2026-05-11
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-08 08:25:47
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.81.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 04:25:25.097003 2026] [security2:error] [pid 27000:tid 27000] [client 172.71.81.214:9378] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jiggaboojones.com"] [uri "/.env.development"] [unique_id "af2d9cNB3-IE3wpHnU2BcQAAAC0"], referer: https://www.google.com/search?q=jiggaboojones.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-24 18:33:05
(4 months ago)
172.71.81.214 - - [24/Apr/2026:21:33:04 +0300] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 4 ...
show more
172.71.81.214 - - [24/Apr/2026:21:33:04 +0300] "GET /wp-content/themes/hideo/network.php HTTP/1.1" 404 3349 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
172.71.81.214 - - [24/Apr/2026:21:33:04 +0300] "GET /wp-login.php HTTP/1.1" 404 789 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
2026-04-16 13:00:04
(4 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฎ๐ช
eyesilyurt
2026-04-06 23:03:04
(5 months ago)
p- login authenticator failed Incorrect authentication data
Brute-Force
SSH