๐บ๐ธ
TPI-Abuse
2026-07-20 11:32:59
(1 hour ago)
(mod_security) mod_security (id:949110) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:949110) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 07:32:54.390799 2026] [security2:error] [pid 2949497:tid 2949497] [client 157.52.92.21:15912] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "tractorsupplyfarmandhome.com.crazycontrols.com"] [uri "/.git/config"] [unique_id "al4HZg2778xL1fsh02OBUAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-20 00:58:57
(12 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 20:50:00
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 16:49:54.678431 2026] [security2:error] [pid 21839:tid 21839] [client 157.52.92.21:22174] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.flyingdodopublications.com"] [uri "/.git/HEAD"] [unique_id "al04crqF2iCHRzYZrIvlGQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 16:46:59
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 12:46:51.942895 2026] [security2:error] [pid 10935:tid 10935] [client 157.52.92.21:40434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jimmyshakes.org"] [uri "/.git/HEAD"] [unique_id "alz_eythXQ7tyrDXX4TDHQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 16:22:56
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 12:22:52.256453 2026] [security2:error] [pid 1822029:tid 1822029] [client 157.52.92.21:12624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.kavahawaii.com"] [uri "/.git/HEAD"] [unique_id "alz53FDindwUv-jrfpUTqAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 12:35:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 08:35:18.268980 2026] [security2:error] [pid 1605779:tid 1605779] [client 157.52.92.21:7478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.agapeaccounting.com"] [uri "/.git/config"] [unique_id "alzEhhv9Q82nKM22CTbaEQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 10:43:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 06:43:36.624530 2026] [security2:error] [pid 4136828:tid 4136841] [client 157.52.92.21:4534] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ahmedabdelsattar.newtrendmag.org"] [uri "/.git/HEAD"] [unique_id "alyqWFvCA3oIK-F5fXfBJgAAAQk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 08:32:48
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 04:32:44.242465 2026] [security2:error] [pid 5181:tid 5181] [client 157.52.92.21:33486] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.theateroobleck.com"] [uri "/.git/HEAD"] [unique_id "alyLrLJTbS4llQpCtK35MwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 08:17:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 04:17:39.244595 2026] [security2:error] [pid 17810:tid 17810] [client 157.52.92.21:59196] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.saiz.us"] [uri "/.git/HEAD"] [unique_id "alyII0HOA9ZLsT_0Uotg7AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 07:51:13
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 03:51:08.652219 2026] [security2:error] [pid 27317:tid 27317] [client 157.52.92.21:45838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "brbcash.com"] [uri "/.git/config"] [unique_id "alyB7IK-AZjk6lIv8vt64gAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐ด
INTEQ
2026-07-19 04:37:40
(1 day ago)
Web attack from 157.52.92.21
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 03:21:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 23:21:05.309698 2026] [security2:error] [pid 24532:tid 24532] [client 157.52.92.21:7882] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.chavarri.com"] [uri "/.git/config"] [unique_id "alxCoVbfi9S03Ron9e8uwQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 01:02:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 21:02:49.530993 2026] [security2:error] [pid 26203:tid 26203] [client 157.52.92.21:32136] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hydrusdetergents.com"] [uri "/.git/HEAD"] [unique_id "alwiOdRUq1fJXGvApgoQOwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Epimetheus
2026-07-19 00:48:17
(1 day ago)
Unauthorized access attempts:
[GET] /.git/config
[GET] /.git/HEAD
UA: Mozilla/5.0 (Windows NT 10.0 ...
show more
Unauthorized access attempts:
[GET] /.git/config
[GET] /.git/HEAD
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 00:26:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.21 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 20:26:48.078569 2026] [security2:error] [pid 28359:tid 28359] [client 157.52.92.21:27102] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.damova.net"] [uri "/.git/config"] [unique_id "alwZyJ9cFown2kxwdmgjCwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack