๐บ๐ธ
TPI-Abuse
2026-08-21 21:20:28
(6 minutes ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 17:20:21.631642 2026] [security2:error] [pid 24145:tid 24145] [client 165.22.2.254:41614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ecrecorp.com"] [uri "/.git/config"] [unique_id "aojBFWv33Bh8fE6mhKwqjAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-08-21 21:05:11
(22 minutes ago)
Abuse Detected (19)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 20:47:14
(40 minutes ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 16:47:10.634870 2026] [security2:error] [pid 16254:tid 16340] [client 165.22.2.254:55678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "driftwoodblue.com"] [uri "/.git/config"] [unique_id "aoi5Tle9ble8Y5pLks85pwAAAFg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 20:13:40
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 16:13:32.911589 2026] [security2:error] [pid 8392:tid 8392] [client 165.22.2.254:38098] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fgrotary.org"] [uri "/.git/config"] [unique_id "aoixbEVVyuYJ2yHYTzEXvAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-21 19:03:05
(2 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 3 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:55:27
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:55:20.112839 2026] [security2:error] [pid 28755:tid 28755] [client 165.22.2.254:38104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "swpppcal.com"] [uri "/.git/config"] [unique_id "aoifGDPIbB259BoSsPVGJwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-21 18:55:21
(2 hours ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:40:21
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:40:17.021602 2026] [security2:error] [pid 10207:tid 10207] [client 165.22.2.254:50934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "f4fbbs.com"] [uri "/.git/config"] [unique_id "aoibkXFDn5KegIdI4F_V8gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-21 18:30:02
(2 hours ago)
suspicious request in access.log
Web App Attack
๐ฉ๐ช
4server
2026-08-21 18:27:14
(3 hours ago)
[FriAug2120:27:08.2612952026][security2:error][pid1418668:tid1418681][client165.22.2.254:0]ModSecuri ...
show more
[FriAug2120:27:08.2612952026][security2:error][pid1418668:tid1418681][client165.22.2.254:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"worldgoldfundltd.com\"][uri\"/.git/config\"][unique_id\"aoiYfPdHsbxtPLyPuluK4AAAAUI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-08-21 18:05:14
(3 hours ago)
Abuse Detected (10)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 18:04:50
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 14:04:46.170397 2026] [security2:error] [pid 15963:tid 15963] [client 165.22.2.254:56944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "erinakhan-design.org"] [uri "/.git/config"] [unique_id "aoiTPq8kHSVBz-p3Rrq_AgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-08-21 17:52:31
(3 hours ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
Michel Wijnberg
2026-08-21 17:49:09
(3 hours ago)
165.22.2.254 - - [21/Aug/2026:17:49:08 +0000] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 ( ...
show more
165.22.2.254 - - [21/Aug/2026:17:49:08 +0000] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/81.0.4044.129 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 17:43:50
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 165.22.2.254 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 13:43:46.569451 2026] [security2:error] [pid 3281:tid 3281] [client 165.22.2.254:58904] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexscollay.com"] [uri "/.git/config"] [unique_id "aoiOUixOlTMHPLjZh_f4BgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack