πΊπΈ
TPI-Abuse
2026-07-21 20:55:25
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:55:20.121594 2026] [security2:error] [pid 27949:tid 27949] [client 157.52.92.45:16086] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mariedjones.com"] [uri "/.git/HEAD"] [unique_id "al_cuPnOqewhcWrGTEVSggAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-07-21 18:58:13
(5 hours ago)
Web attack/malicious scanning detected
Web App Attack
Anonymous
2026-07-21 18:45:36
(5 hours ago)
2026/07/21 18:45:32 [error] 4730#4730: *99718 [client 157.52.92.45] ModSecurity: Access denied with ...
show more
2026/07/21 18:45:32 [error] 4730#4730: *99718 [client 157.52.92.45] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr/local/owasp-modsecurity-crs-4.11.0/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "222"] [id "949110"] [rev ""] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [data ""] [severity "0"] [ver "OWASP_CRS/4.28.0"] [maturity "0"] [accuracy "0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "loanprocessor-api.ingeltechgh.com"] [uri "/.git/HEAD"] [unique_id "178465953217.131907"] [ref ""], client: 157.52.92.45, server: srv.ingeltechgh.com, request: "GET /.git/HEAD HTTP/1.1", host: "loanprocessor-api.ingeltechgh.com"
2026/07/21 18:45:33 [error] 4730#4730: *99718 [client 157.52.92.45] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' )
...
show less
Brute-Force
πΊπΈ
TPI-Abuse
2026-07-21 16:25:24
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 12:25:19.706814 2026] [security2:error] [pid 3393:tid 3434] [client 157.52.92.45:62540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.abroma.honeyled.com"] [uri "/.git/HEAD"] [unique_id "al-db-KQ8Utmb2MGI3EbUAAAAEg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 12:53:22
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 08:53:17.134106 2026] [security2:error] [pid 271799:tid 271799] [client 157.52.92.45:53038] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clcmillvale.com"] [uri "/.git/HEAD"] [unique_id "al9rvfaXVS4j0WPPx4zcmAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 10:45:19
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:45:13.169906 2026] [security2:error] [pid 32533:tid 32533] [client 157.52.92.45:30838] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.blaslandsporthorses.com"] [uri "/.git/HEAD"] [unique_id "al9NuXUuK6SvLFJwEDG2OQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 10:14:13
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:14:06.320186 2026] [security2:error] [pid 541:tid 541] [client 157.52.92.45:57670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thebronsons.com"] [uri "/.git/HEAD"] [unique_id "al9Gbs4CaPMho-jhfdA42QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 23:53:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:53:30.161629 2026] [security2:error] [pid 2191474:tid 2191474] [client 157.52.92.45:35710] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oogeothermal.com"] [uri "/.git/HEAD"] [unique_id "al60-jN5-H19sjRr2M3_rwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 22:50:06
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 18:50:00.173272 2026] [security2:error] [pid 2826:tid 2826] [client 157.52.92.45:44470] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "atame.com"] [uri "/.git/HEAD"] [unique_id "al6mGFP2T5q6WwdipYGj1wAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
macrob
2026-07-20 21:44:08
(1 day ago)
2026/07/20 21:44:05 [error] 2087333#2087333: *394038968 access forbidden by rule, client: 157.52.92. ...
show more
2026/07/20 21:44:05 [error] 2087333#2087333: *394038968 access forbidden by rule, client: 157.52.92.45, server: binofferes.com, request: "GET /.git/HEAD HTTP/1.1", host: "binofferes.com"
2026/07/20 21:44:05 [error] 2087333#2087333: *394038968 access forbidden by rule, client: 157.52.92.45, server: binofferes.com, request: "GET /.git/HEAD HTTP/1.1", host: "binofferes.com"
2026/07/20 21:44:07 [error] 2087333#2087333: *394038968 access forbidden by rule, client: 157.52.92.45, server: binofferes.com, request: "GET /.git/HEAD HTTP/1.1", host: "binofferes.com"
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 19:20:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 15:20:38.267529 2026] [security2:error] [pid 14059:tid 14059] [client 157.52.92.45:42208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.unitoolsupplies.com"] [uri "/.git/HEAD"] [unique_id "al51BsdqoFDXRRHYmuInywAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 18:51:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:51:22.300347 2026] [security2:error] [pid 394:tid 394] [client 157.52.92.45:45868] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.limobusrichmond.com"] [uri "/.git/HEAD"] [unique_id "al5uKrfOVN4AeNh7CJUw0QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 18:30:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:30:43.051471 2026] [security2:error] [pid 1319455:tid 1319455] [client 157.52.92.45:28658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scruffware.com"] [uri "/.git/HEAD"] [unique_id "al5pU5KJrl-a83REn_8iTwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Starburst SysOp Team
2026-07-20 18:24:56
(1 day ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-mnz6-1)
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 17:56:40
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 13:56:32.581593 2026] [security2:error] [pid 19044:tid 19044] [client 157.52.92.45:5310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mcacpas.com"] [uri "/.git/HEAD"] [unique_id "al5hUHo_eOsji1ncbjYRdgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack