๐บ๐ธ
TPI-Abuse
2026-07-22 10:51:04
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 06:50:59.861686 2026] [security2:error] [pid 1247133:tid 1247133] [client 157.52.92.23:31696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.keysenterprise.net"] [uri "/.git/HEAD"] [unique_id "amCgk-3XJgBcKEmidiCeswAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-22 09:31:59
(2 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 157.52.92.23 (SG/Singapore/-): 1 in t ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 157.52.92.23 (SG/Singapore/-): 1 in the last 3600 secs (0-195)
show less
Hacking
Anonymous
2026-07-22 07:40:54
(2 days ago)
Suspicious or malicious traffic has been detected
Web App Attack
๐ฟ๐ฆ
conure
2026-07-21 20:10:49
(2 days ago)
csagent: score 18.0: secrets grab x2, 404 noise floor x2; 2 domain(s) in 48s
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-21 15:18:04
(2 days ago)
Try to access /.git/HEAD
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 10:46:34
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:46:27.909984 2026] [security2:error] [pid 29166:tid 29166] [client 157.52.92.23:46700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.alextra.org"] [uri "/.git/HEAD"] [unique_id "al9OA75-Euc3HB43UhCNmAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-07-21 09:56:53
(3 days ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-21 09:38:57
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ณ๐ด
jad-abuse
2026-07-21 09:15:11
(3 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 3 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:49:58
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:49:52.846080 2026] [security2:error] [pid 32517:tid 32517] [client 157.52.92.23:13040] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yaseminelhan.com"] [uri "/.git/HEAD"] [unique_id "al60IPm8zKfXZtI5-MmePgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:13:36
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:13:29.386513 2026] [security2:error] [pid 14823:tid 14823] [client 157.52.92.23:9084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "body-tone.com"] [uri "/.git/HEAD"] [unique_id "al6rmdctrXoO070wfX4pewAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 22:35:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 18:35:25.307003 2026] [security2:error] [pid 13557:tid 13557] [client 157.52.92.23:37172] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artbycorinnedodge.com"] [uri "/.git/HEAD"] [unique_id "al6irecR5m4TrO3XegsMLwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-20 22:35:01
(3 days ago)
suspicious request in access.log
Web App Attack
๐ท๐บ
Mga Admin
2026-07-20 21:29:03
(3 days ago)
157.52.92.23 - - [21/Jul/2026:04:29:02 +0700] "GET /.git/HEAD HTTP/1.1" 404 69 "-" "Mozilla/5.0 (X11 ...
show more
157.52.92.23 - - [21/Jul/2026:04:29:02 +0700] "GET /.git/HEAD HTTP/1.1" 404 69 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 19:05:42
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.23 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 15:05:36.745544 2026] [security2:error] [pid 9818:tid 9855] [client 157.52.92.23:5644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.tomi-thai.com"] [uri "/.git/HEAD"] [unique_id "al5xgFTnePgRChJqznGGmQAAAUY"]
show less
Brute-Force
Bad Web Bot
Web App Attack