๐บ๐ธ
TPI-Abuse
2026-07-22 19:16:22
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 22 15:16:14.922870 2026] [security2:error] [pid 3742283:tid 3742283] [client 157.52.92.57:9210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graydortmotors.com"] [uri "/.git/HEAD"] [unique_id "amEW_plc4sWEFOi2RztXCAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-22 02:10:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 22:10:45.468630 2026] [security2:error] [pid 3753797:tid 3753797] [client 157.52.92.57:45106] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.barkdull.org"] [uri "/.git/HEAD"] [unique_id "amAmpVyZKNa9u11cxvUi0gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 20:25:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 16:25:14.612746 2026] [security2:error] [pid 3153:tid 3153] [client 157.52.92.57:4862] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ocmtx.org"] [uri "/.git/HEAD"] [unique_id "al_Vqt9DWmB3mpq-WKSiqAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 17:46:24
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 13:46:20.694662 2026] [security2:error] [pid 3158531:tid 3158531] [client 157.52.92.57:33346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sigridsnaturalfoods.com"] [uri "/.git/HEAD"] [unique_id "al-wbJM0EJ2ceW-VeWGZRAAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
ByeByte API
2026-07-21 16:58:34
(1 day ago)
byebyte.space auth: GET /.git/HEAD at 2026-07-21T16:58:34Z. Honeypot path hit; firewall auto-banned ...
show more
byebyte.space auth: GET /.git/HEAD at 2026-07-21T16:58:34Z. Honeypot path hit; firewall auto-banned the IP for 24h. UA: 'Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36'. Accept-Language: 'en-US,en;q=0.9'. Accept-Encoding: 'gzip, br'. Sec-Ch-Ua: '"Not:A-Brand";v="99", "Google Chrome";v="125", "Chromium";v="125"'. Platform: "Windows" (mobile=?0). Country (CF): SG. TLS info: {"scheme":"https"}.
show less
Web App Attack
Port Scan
๐บ๐ธ
TPI-Abuse
2026-07-21 16:17:36
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 12:17:28.708524 2026] [security2:error] [pid 124790:tid 124790] [client 157.52.92.57:47964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.towardthesky.com"] [uri "/.git/HEAD"] [unique_id "al-bmD3JyQ4YdrSi12tf2wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-21 14:21:02
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 13:30:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 09:30:11.690588 2026] [security2:error] [pid 25711:tid 25711] [client 157.52.92.57:28084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.edgecombe.net"] [uri "/.git/HEAD"] [unique_id "al90Y7eN874KGf5x6JFVVgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 11:00:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 07:00:19.901775 2026] [security2:error] [pid 20601:tid 20601] [client 157.52.92.57:62380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.georgetownca.com"] [uri "/.git/HEAD"] [unique_id "al9RQ9TZ0dZpWTpJ-a0JzAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
omc
2026-07-20 23:41:36
(2 days ago)
AH01630: Client denied by server config
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-20 21:51:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 17:51:32.370628 2026] [security2:error] [pid 13850:tid 13850] [client 157.52.92.57:3210] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stthomastrainer.com"] [uri "/.git/HEAD"] [unique_id "al6YZMw-tUOP47g1AjC1eAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
TheCoon
2026-07-20 19:00:01
(2 days ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 18:12:44
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:12:40.815858 2026] [security2:error] [pid 3348288:tid 3348288] [client 157.52.92.57:62974] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "oakvillenaturopathicclinic.com"] [uri "/.git/HEAD"] [unique_id "al5lGAabZBUVMBvMrpv6iAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 15:54:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 11:54:18.288034 2026] [security2:error] [pid 1057418:tid 1057418] [client 157.52.92.57:64532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.caleb.calebdavison.com"] [uri "/.git/config"] [unique_id "al5EqntdZ03Cj8CJqFqAVwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 12:29:50
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 08:29:45.977712 2026] [security2:error] [pid 21338:tid 21338] [client 157.52.92.57:12120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ontimelogistiks.com"] [uri "/.git/HEAD"] [unique_id "al4UuSd0-hoxStCVpk474AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack