๐บ๐ธ
TPI-Abuse
2026-07-21 14:51:52
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 10:51:47.419934 2026] [security2:error] [pid 6700:tid 6700] [client 157.52.92.46:33012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.mrsreclamation.com"] [uri "/.git/HEAD"] [unique_id "al-Hg6GYc8B1kMw26HOO5AAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 14:35:24
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 10:35:19.196895 2026] [security2:error] [pid 2937298:tid 2937298] [client 157.52.92.46:38906] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "achildsspace2.com"] [uri "/.git/HEAD"] [unique_id "al-Dp9Z8m1xg4T2IP3oHrQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 12:46:31
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 08:46:24.331779 2026] [security2:error] [pid 23011:tid 23011] [client 157.52.92.46:33554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.kentsavagelaw.com"] [uri "/.git/HEAD"] [unique_id "al9qIIfiAAWOfISFP3S5UgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 10:56:22
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:56:16.061626 2026] [security2:error] [pid 306781:tid 306781] [client 157.52.92.46:29478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.towardthesky.com"] [uri "/.git/HEAD"] [unique_id "al9QUFAauX7Ldbe-eBZlxwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฟ๐ฆ
conure
2026-07-21 10:16:01
(20 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 09:53:17
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 05:53:10.366794 2026] [security2:error] [pid 6242:tid 6242] [client 157.52.92.46:32088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.juniperhills.net"] [uri "/.git/HEAD"] [unique_id "al9Bhuk_YcEA9qDiQvG-4QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-07-21 09:05:00
(21 hours ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 23:59:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:59:27.882185 2026] [security2:error] [pid 17462:tid 17462] [client 157.52.92.46:59364] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.rockwaychiropractic.com"] [uri "/.git/HEAD"] [unique_id "al62XxQat_n_A4B2jyfNIgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-20 23:05:02
(1 day ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 22:13:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 18:13:39.937922 2026] [security2:error] [pid 956655:tid 956655] [client 157.52.92.46:23092] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.buggyshop.org"] [uri "/.git/HEAD"] [unique_id "al6dk8rl--8zc-dvwMOW-AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-20 21:59:19
(1 day ago)
Auto-ban: >3000 req/min op 2026-07-20
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 21:42:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 17:42:39.097287 2026] [security2:error] [pid 20809:tid 20809] [client 157.52.92.46:5490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ultratecnologia.com"] [uri "/.git/HEAD"] [unique_id "al6WT7xbHieHzbLoNLjQjAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Matthew Ping
2026-07-20 19:45:01
(1 day ago)
ModSecurity rule 949110 triggered on d865. Web application attack blocked by CSF/LFD.
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 19:10:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 15:10:47.766051 2026] [security2:error] [pid 3401095:tid 3401095] [client 157.52.92.46:38208] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.kelleysbridge.com"] [uri "/.git/HEAD"] [unique_id "al5yt5niJUd-eBsj5LTB1wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
mail.avx.gr
2026-07-20 18:54:54
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: avaxsh.avx.gr:443 157.52.92.46 - - [20/Jul/2026:2 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: avaxsh.avx.gr:443 157.52.92.46 - - [20/Jul/2026:21:54:53 +0300] "GET /.git/HEAD HTTP/1.1" 403 5654 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
show less
Web App Attack