πΊπΈ
TPI-Abuse
2026-07-20 00:41:48
(9 minutes ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 20:41:45.309779 2026] [security2:error] [pid 12077:tid 12077] [client 157.52.92.68:58098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.astrologydemo.com"] [uri "/.git/HEAD"] [unique_id "al1uyRf4HVQlJLRu83KiCAAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
TheCoon
2026-07-19 23:15:01
(1 hour ago)
Automated: Credential theft attempt - JSON bomb served
Web App Attack
Hacking
π³π΄
jad-abuse
2026-07-19 21:22:43
(3 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 19:47:29
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 15:47:23.466765 2026] [security2:error] [pid 3752718:tid 3752718] [client 157.52.92.68:50720] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.bacona.org"] [uri "/.git/HEAD"] [unique_id "al0py2l-4M4uFU-gd1ZaKAAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 15:38:37
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 11:38:32.190054 2026] [security2:error] [pid 408724:tid 408724] [client 157.52.92.68:39728] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.camasmarket.com"] [uri "/.git/config"] [unique_id "alzvePgVIEkJn9iqF0yKogAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 15:01:21
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 11:01:14.218409 2026] [security2:error] [pid 3889249:tid 3889249] [client 157.52.92.68:47878] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.megaandina.com"] [uri "/.git/HEAD"] [unique_id "alzmuspREnfQjCg_h9CyBQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Charlesiv
2026-07-19 10:04:51
(14 hours ago)
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
ASN: 54113 (Fastly, Inc.)
Pro ...
show more
Triggered Cloudflare WAF (firewallCustom) from SG.
Action taken: BLOCK
ASN: 54113 (Fastly, Inc.)
Protocol: HTTP/1.1 (GET method)
Endpoint: /.git/config
Timestamp: 2026-07-19T08:28:19Z
Ray ID: a1d85a1adf5ef8ee
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0
show less
Bad Web Bot
π©πͺ
big-cloud.nl
2026-07-19 09:50:34
(15 hours ago)
Try to access /.git/config
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 09:32:04
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 05:31:57.453495 2026] [security2:error] [pid 5860:tid 5860] [client 157.52.92.68:28340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.48consultancy.com"] [uri "/.git/HEAD"] [unique_id "alyZjeqIDgGD3XHxlvKyGgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 06:52:42
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 02:52:35.080960 2026] [security2:error] [pid 21448:tid 21467] [client 157.52.92.68:31340] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.kennedyfineartphotography.com"] [uri "/.git/HEAD"] [unique_id "alx0M_A_TtkC8rUnTLfliwAAAVA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 05:15:29
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 19 01:15:26.309117 2026] [security2:error] [pid 3223432:tid 3223432] [client 157.52.92.68:12242] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bosdkbook.com"] [uri "/.git/config"] [unique_id "alxdbovibq_BW4bxqGVXdgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π
ALPHANET
2026-07-19 03:26:02
(21 hours ago)
web exploits
Hacking
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-19 02:25:10
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 22:25:02.509556 2026] [security2:error] [pid 9161:tid 9161] [client 157.52.92.68:27262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.earlyeditionsbookshop.banis-associates.com"] [uri "/.git/config"] [unique_id "alw1fl3oCFwhtEWGlzMsOwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¬π§
Yosi
2026-07-19 02:24:17
(22 hours ago)
RdpGuard detected brute-force attempt on HTTP
Brute-Force
πΊπΈ
TPI-Abuse
2026-07-19 02:09:11
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 157.52.92.68 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 22:09:06.602355 2026] [security2:error] [pid 2844920:tid 2844920] [client 157.52.92.68:9586] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "avanyupublishing.com"] [uri "/.git/config"] [unique_id "alwxwiuXe_Emmo4fDgw4_gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack