πΊπΈ
TPI-Abuse
2026-07-22 13:39:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 09:38:57.519330 2026] [security2:error] [pid 1071666:tid 1071666] [client 157.52.92.51:45398] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.bronislawsuchanek.com"] [uri "/.git/HEAD"] [unique_id "amDH8a3ijHWx0Xna7QZJKgAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
consul.to
2026-07-22 12:47:22
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 20:53:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:53:42.149296 2026] [security2:error] [pid 14284:tid 14284] [client 157.52.92.51:50212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.eagrant.com"] [uri "/.git/HEAD"] [unique_id "al_cVscNZkPgJCfmreLRMAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-07-21 16:11:28
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
π«π·
masterguru
2026-07-21 12:57:42
(2 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-196)
Hacking
Web App Attack
πΏπ¦
conure
2026-07-21 12:11:28
(2 days ago)
csagent: score 20.2: secrets grab x2, 404 noise floor x1; 2 domain(s) in 1s
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-21 00:17:52
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 20:17:45.220678 2026] [security2:error] [pid 25072:tid 25076] [client 157.52.92.51:15370] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.wpe.uk.com"] [uri "/.git/HEAD"] [unique_id "al66qR4g_4pZRm4KNNm7ywAAAUI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 23:23:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 19:23:55.580727 2026] [security2:error] [pid 19468:tid 19468] [client 157.52.92.51:48564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teamspiro.com"] [uri "/.git/HEAD"] [unique_id "al6uC4NMj_QkyO9pO974awAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 22:23:47
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 18:23:41.094756 2026] [security2:error] [pid 10749:tid 10749] [client 157.52.92.51:19016] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.acquivest.net"] [uri "/.git/HEAD"] [unique_id "al6f7TUQBFRQ621h9kI-1QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
webanyone
2026-07-20 22:15:52
(3 days ago)
WAF repeated trigger detected by Fail2Ban in plesk-modsecurity jail
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 18:15:19
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:15:13.210548 2026] [security2:error] [pid 2550900:tid 2550900] [client 157.52.92.51:22618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.vicmackenzie.com"] [uri "/.git/HEAD"] [unique_id "al5lsQDOsGLeQBOkCvgJQAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 17:51:31
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 13:51:26.547027 2026] [security2:error] [pid 29845:tid 29845] [client 157.52.92.51:50050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rodamundo.blog"] [uri "/.git/config"] [unique_id "al5gHmjUmyl_-riI-16YkgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 16:15:44
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 12:15:38.734242 2026] [security2:error] [pid 22925:tid 22925] [client 157.52.92.51:7384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.haywardcarpentry.com"] [uri "/.git/config"] [unique_id "al5Jqk05E_AZea_fyzNNMAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-20 14:50:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 10:50:32.342104 2026] [security2:error] [pid 992700:tid 992700] [client 157.52.92.51:7350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cathayexpress.com"] [uri "/.git/config"] [unique_id "al41uHsqa5Y_W2TnDSOLwAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
kosada.com
2026-07-20 07:41:41
(4 days ago)
Web vulnerability probing: /.git/config
Web App Attack