๐ฆ๐บ
nzhost.co.nz
2026-08-25 15:21:12
(1 hour ago)
$f2bV_matches
Hacking
Brute-Force
๐ฉ๐ช
BlueWire Hosting
2026-08-25 15:18:57
(1 hour ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 15:17:38
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 11:17:32.914295 2026] [security2:error] [pid 23017:tid 23017] [client 165.22.12.128:47722] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "serpentstudios.com"] [uri "/.git/config"] [unique_id "ao2yDCaEC7lEiUz-TBb5cAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-25 15:05:15
(1 hour ago)
Abuse Detected (19)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:56:29
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:56:24.709520 2026] [security2:error] [pid 28602:tid 28602] [client 165.22.12.128:52506] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robertminuzzo.com"] [uri "/.git/config"] [unique_id "ao2tGNSLYvxXxYgfc7emmAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 13:37:54
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:37:50.309057 2026] [security2:error] [pid 31080:tid 31080] [client 165.22.12.128:48100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mountainjaytherapy.com"] [uri "/.git/config"] [unique_id "ao2argSs863lbPPPZmRjmQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-08-25 11:42:41
(5 hours ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
๐บ๐ธ
mnsf
2026-08-25 11:05:05
(5 hours ago)
Abuse Detected (9)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 10:29:30
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 06:29:25.147058 2026] [security2:error] [pid 30559:tid 30559] [client 165.22.12.128:33780] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pagescigars.com"] [uri "/.git/config"] [unique_id "ao1uhWsrWpo13ATWmxz7dAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 09:40:23
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 05:40:17.416878 2026] [security2:error] [pid 30048:tid 30048] [client 165.22.12.128:60082] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "saudigreenrecyling.com"] [uri "/.git/config"] [unique_id "ao1jAdUr5kG1XiLzo1bUtwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-25 09:38:12
(7 hours ago)
[TueAug2511:38:07.0305382026][security2:error][pid3507915:tid3508180][client165.22.12.128:0]ModSecur ...
show more
[TueAug2511:38:07.0305382026][security2:error][pid3507915:tid3508180][client165.22.12.128:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"shadowdrummer.ch\"][uri\"/.git/config\"][unique_id\"ao1if-_mfZ9OAr6k7Vo3eAAAAVI\"]
show less
Hacking
Web App Attack
๐ฉ๐ช
4server
2026-08-25 09:08:26
(7 hours ago)
[TueAug2511:08:20.0565042026][security2:error][pid2286440:tid2286473][client165.22.12.128:0]ModSecur ...
show more
[TueAug2511:08:20.0565042026][security2:error][pid2286440:tid2286473][client165.22.12.128:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"massimilianoparquet.ch\"][uri\"/.git/config\"][unique_id\"ao1bhPD9wOoZPdNqpa2YVwAAABc\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:46:19
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:46:14.029790 2026] [security2:error] [pid 26318:tid 26318] [client 165.22.12.128:36666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "planettony.com"] [uri "/.git/config"] [unique_id "ao1WVpc7mJT_ryGG7eKCCwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:24:38
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:24:33.024981 2026] [security2:error] [pid 31634:tid 31634] [client 165.22.12.128:43632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thereisaplaceonearth.com"] [uri "/.git/config"] [unique_id "ao1RQdpHzSu2YFND6nKnzAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 07:24:12
(9 hours ago)
(mod_security) mod_security (id:949110) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 165.22.12.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 03:24:06.991064 2026] [security2:error] [pid 11871:tid 11871] [client 165.22.12.128:55126] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "likulikubookings.com"] [uri "/.git/config"] [unique_id "ao1DFhAnh0zW08uImCp1AwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack