๐บ๐ธ
TPI-Abuse
2026-07-22 12:59:56
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 08:59:48.663235 2026] [security2:error] [pid 1194468:tid 1194468] [client 157.52.92.50:11818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.saboun.com"] [uri "/.git/HEAD"] [unique_id "amC-xDoUSKKEpLiPS2Cl4QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-22 12:08:06
(4 days ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 157.52.92.50 (SG/Singapore/-): 1 in t ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 157.52.92.50 (SG/Singapore/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ฉ๐ช
big-cloud.nl
2026-07-22 00:41:24
(5 days ago)
Try to access /.git/HEAD
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 19:57:37
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 15:57:31.117575 2026] [security2:error] [pid 588454:tid 588454] [client 157.52.92.50:4504] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "isyourcorporationsafe.com"] [uri "/.git/HEAD"] [unique_id "al_PKzZBzwOgytv_lZvpqQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 18:46:27
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 14:46:21.162948 2026] [security2:error] [pid 32505:tid 32505] [client 157.52.92.50:62716] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.santurri.net"] [uri "/.git/HEAD"] [unique_id "al--fUCIZGsQhw71BoMDwQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 14:10:54
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 10:10:51.375438 2026] [security2:error] [pid 8102:tid 8102] [client 157.52.92.50:22804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "theledmancom.rotarymagnetics.com"] [uri "/.git/HEAD"] [unique_id "al99680OGiJxXAPnUNQMqQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 13:42:35
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 09:42:27.166479 2026] [security2:error] [pid 3887231:tid 3887243] [client 157.52.92.50:28324] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lairsacre.kylight.com"] [uri "/.git/HEAD"] [unique_id "al93Q_eoLVRzYQ02jHiMbwAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 11:38:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 07:38:21.454697 2026] [security2:error] [pid 7711:tid 7747] [client 157.52.92.50:16704] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.catch-22productions.com"] [uri "/.git/HEAD"] [unique_id "al9aLVFUfE-tLiG7RUxxnAAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-07-21 09:24:53
(5 days ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
Anonymous
2026-07-21 04:31:49
(5 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-07-20 22:45:15
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 18:44:57.427097 2026] [security2:error] [pid 14834:tid 14834] [client 157.52.92.50:30894] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.prodigyventure.com"] [uri "/.git/HEAD"] [unique_id "al6k6Wuly8AVdy3jojxtkQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 22:20:47
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 18:20:40.703512 2026] [security2:error] [pid 1602011:tid 1602011] [client 157.52.92.50:47668] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avanyupublishing.com"] [uri "/.git/HEAD"] [unique_id "al6fOPLvPrm1Pxmm4q_ZHwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-07-20 22:10:30
(6 days ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 17:36:22
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.50 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 13:36:17.565129 2026] [security2:error] [pid 2768:tid 2784] [client 157.52.92.50:21538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.tusappsonline.com"] [uri "/.git/HEAD"] [unique_id "al5ckUtAMvUl9QZQEGe0ygAAAQw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-20 17:23:58
(6 days ago)
cloudlinux2 fail2ban: 2026-07-20 19:19:19,993 fail2ban.filter [1927]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-07-20 19:19:19,993 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 45.146.54.139 - 2026-07-20 19:19:19cloudlinux2 fail2ban: 2026-07-20 19:19:20,086 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 216.73.163.151 - 2026-07-20 19:19:19cloudlinux2 fail2ban: 2026-07-20 19:19:51,743 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 157.52.92.50 - 2026-07-20 19:19:51cloudlinux2 fail2ban: 2026-07-20 19:19:52,049 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 157.52.92.50 - 2026-07-20 19:19:52cloudlinux2 fail2ban: 2026-07-20 19:20:18,778 fail2ban.actions [1927]: NOTICE [plesk-modsecurity] Ban 157.52.92.86cloudlinux2 fail2ban: 2026-07-20 19:20:18,067 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 157.52.92.86 - 2026-07-20 19:20:17cloudlinux2 fail2ban: 2026-07-20 19:20:16,114 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 157.52.92.86 - 2026-07-20 19:20:15cloudlinux2 fail2ban: 2026-
show less
Web App Attack