๐บ๐ธ
TPI-Abuse
2026-09-21 10:58:09
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 06:58:02.612741 2026] [security2:error] [pid 14023:tid 14124] [client 91.108.178.171:33074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uoexpanse.com"] [uri "/.git/HEAD"] [unique_id "arENura0wrz2ftMfk3AUgQAAAYU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-20 16:09:24
(1 day ago)
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-11al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 91.108.178.171 - - [20/Sep/2026:18:09:05 +0200] "GET /.git/HEAD HTTP/1.1" 301 487 "-" "Python-urllib/3.10"
...
show less
Bad Web Bot
Web App Attack
Anonymous
2026-09-20 12:30:01
(1 day ago)
suspicious request in access.log
Web App Attack
๐จ๐ญ
4server
2026-09-20 10:11:15
(1 day ago)
[SunSep2012:11:10.4537002026][security2:error][pid245939:tid246055][client91.108.178.171:0]ModSecuri ...
show more
[SunSep2012:11:10.4537002026][security2:error][pid245939:tid246055][client91.108.178.171:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Matchof\"rx\(\^w3c-\|systran\\\\\\\\\)\)\"against\"REQUEST_HEADERS:User-Agent\"required.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"218\"][id\"331039\"][rev\"1\"][msg\"Atomicorp.comWAFRules:SuspiciousUnusualUserAgent\(Python-urllib\).DisablethisruleifyouusePython-urllib.\"][severity\"CRITICAL\"][hostname\"www.swiss-web-hosting.com\"][uri\"/403.shtml\"][unique_id\"aq-xPhiFpEdlewbGWvcoPgAAAQ4\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-20 10:11:12
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 06:11:05.467495 2026] [security2:error] [pid 21629:tid 21629] [client 91.108.178.171:37502] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "summithost.com"] [uri "/.git/HEAD"] [unique_id "aq-xOdnHYm01lzdK0PmjkwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2026-09-20 04:03:06
(1 day ago)
block ruleset bad bot: misc bad content F608233CC4C86EE814CE8DDDA9C4A0D3C79882F6
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-09-19 05:15:49
(2 days ago)
[19/Sep/2026:08:15:48 +0300] -- 91.108.178.171 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-18 18:05:50
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 18 14:05:43.480622 2026] [security2:error] [pid 13204:tid 13204] [client 91.108.178.171:36060] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "manvsfoodlocations.com"] [uri "/.git/HEAD"] [unique_id "aq19d8RnAFOgNbxoaJ0MFgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 23:09:11
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 19:09:03.003937 2026] [security2:error] [pid 15159:tid 15159] [client 91.108.178.171:55940] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.179vfs.com"] [uri "/.git/HEAD"] [unique_id "aqnQD3uNywd3ll-RGQduTwAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 09:37:14
(6 days ago)
(mod_security) mod_security (id:949110) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 05:37:08.332500 2026] [security2:error] [pid 6577:tid 6577] [client 91.108.178.171:53396] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "mail.letahitibookings.com"] [uri "/.git/HEAD"] [unique_id "aqkRxK_77ZvK6dLdn72vgQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-09-14 19:29:57
(6 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-14 05:25:47
(1 week ago)
[14/Sep/2026:08:25:46 +0300] -- 91.108.178.171 Ban reason: User-Agent Python-urllib
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-14 01:33:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 21:33:23.917598 2026] [security2:error] [pid 14574:tid 14574] [client 91.108.178.171:38685] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dhappraisalservices.com"] [uri "/.git/HEAD"] [unique_id "aqdO4xe9hiixzZXg5cK_6QAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-12 20:56:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 91.108.178.171 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 16:56:21.774512 2026] [security2:error] [pid 2167776:tid 2167870] [client 91.108.178.171:58280] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.paywithfortress.com"] [uri "/.git/HEAD"] [unique_id "aqW8dWLEYSW3wrFGTDaokQAAAgQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
Little Iguana
2026-09-10 19:02:09
(1 week ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking