๐บ๐ธ
TPI-Abuse
2026-07-20 18:45:55
(38 minutes ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:45:48.374062 2026] [security2:error] [pid 3339080:tid 3339080] [client 157.52.92.59:40054] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.slc.com.gt"] [uri "/.git/HEAD"] [unique_id "al5s3LXbWHuOow6VidoJ-wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 18:27:23
(57 minutes ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 14:27:15.306313 2026] [security2:error] [pid 7460:tid 7460] [client 157.52.92.59:4808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.moonlightmotel.com"] [uri "/.git/HEAD"] [unique_id "al5ogwNz3ojY_irtLqFUbQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-20 18:10:02
(1 hour ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 17:31:41
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 13:31:36.336829 2026] [security2:error] [pid 26495:tid 26495] [client 157.52.92.59:9636] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mcbrude.com"] [uri "/.git/HEAD"] [unique_id "al5beB72h3hm_YOMx8Xn-gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-07-20 17:31:03
(1 hour ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 157.52.92.59 (SG/Singapore/-): 1 in t ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 157.52.92.59 (SG/Singapore/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-20 17:04:41
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 13:04:38.111139 2026] [security2:error] [pid 6293:tid 6293] [client 157.52.92.59:43380] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bogans.net"] [uri "/.git/HEAD"] [unique_id "al5VJjP6An0emZiKt3k3kAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-20 15:09:34
(4 hours ago)
Try to access /.git/config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 15:00:34
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 11:00:29.723871 2026] [security2:error] [pid 10900:tid 10900] [client 157.52.92.59:60346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.d-sinema.com"] [uri "/.git/HEAD"] [unique_id "al44De4v62GF-ElXIc7oSgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-07-20 12:43:57
(6 hours ago)
cloudlinux2 fail2ban: 2026-07-20 14:38:57,977 fail2ban.filter [1927]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-07-20 14:38:57,977 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 15.206.251.117 - 2026-07-20 14:38:57cloudlinux2 fail2ban: 2026-07-20 14:38:51,209 fail2ban.actions [1927]: NOTICE [plesk-modsecurity] Unban 146.190.110.31cloudlinux2 fail2ban: 2026-07-20 14:39:43,240 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 49.36.170.202 - 2026-07-20 14:39:43cloudlinux2 fail2ban: 2026-07-20 14:39:54,429 fail2ban.actions [1927]: NOTICE [recidive] Unban 102.182.46.111cloudlinux2 fail2ban: 2026-07-20 14:40:21,528 fail2ban.filter [1927]: INFO [plesk-wordpress] Found 216.24.212.81 - 2026-07-20 14:40:20cloudlinux2 fail2ban: 2026-07-20 14:40:57,311 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 49.36.170.202 - 2026-07-20 14:40:57cloudlinux2 fail2ban: 2026-07-20 14:41:14,475 fail2ban.filter [1927]: INFO [plesk-modsecurity] Found 185.137.164.11 - 2026-07-20 14:41:14cloudlinux2 fail2ban: 2026-07-20 14:41:19,540 fa
show less
Web App Attack
๐ฉ๐ช
nyt
2026-07-20 00:55:24
(18 hours ago)
Sensitive File Probe, Accessing .git directory may indicate probing behavior
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 21:28:07
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 17:28:03.678975 2026] [security2:error] [pid 19178:tid 19178] [client 157.52.92.59:56548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.register-yacht-bvi.com"] [uri "/.git/HEAD"] [unique_id "al1BY-XDWjD636tg3Dfk1wAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-19 19:23:26
(1 day ago)
157.52.92.59 - - [19/Jul/2026:21:23:24 +0200] "GET /.git/config HTTP/1.1" 403 6860 "-" "Mozilla/5.0 ...
show more
157.52.92.59 - - [19/Jul/2026:21:23:24 +0200] "GET /.git/config HTTP/1.1" 403 6860 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" ...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 16:50:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 12:50:06.314462 2026] [security2:error] [pid 29559:tid 29559] [client 157.52.92.59:45140] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.valueandmeaning.com"] [uri "/.git/config"] [unique_id "al0APqQptZ1Ua3O8v0CKEgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 14:29:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.59 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 10:29:48.910148 2026] [security2:error] [pid 16659:tid 16659] [client 157.52.92.59:52886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peonypeople.com.vanemby.com"] [uri "/.git/HEAD"] [unique_id "alzfXDk-v7fRaiKhr_kQPwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-07-19 13:14:31
(1 day ago)
dot file probe
Web App Attack