Anonymous
2026-07-21 21:45:03
(3 hours ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 19:48:52
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 15:48:47.441121 2026] [security2:error] [pid 9873:tid 9873] [client 172.111.97.6:35524] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.blaslandsporthorses.com"] [uri "/.git/HEAD"] [unique_id "al_NH_7i-WsudkVaBOHuvAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 17:45:35
(7 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 13:45:26.824670 2026] [security2:error] [pid 134356:tid 134356] [client 172.111.97.6:6916] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.willowbrookins.com"] [uri "/.git/HEAD"] [unique_id "al-wNp071y63wJqrBtDWbwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 13:29:36
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 09:29:32.186179 2026] [security2:error] [pid 374523:tid 374523] [client 172.111.97.6:54028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tankercontrol.guardmagic.com"] [uri "/.git/HEAD"] [unique_id "al90PLXrnaykJ60KOvk8EAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-07-21 12:30:59
(12 hours ago)
Try to access /.git/HEAD
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-21 10:32:45
(14 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 21 06:32:39.576435 2026] [security2:error] [pid 25967:tid 26090] [client 172.111.97.6:55708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "powercoupling.com"] [uri "/.git/HEAD"] [unique_id "al9Kx03tBp5DQfetWQLLZwAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Dominik Lysiak
2026-07-20 23:42:38
(1 day ago)
172.111.97.6 - - [21/Jul/2026:01:42:34 +0200] "GET /.git/config HTTP/1.1" 200 19238 "-" "Mozilla/5.0 ...
show more
172.111.97.6 - - [21/Jul/2026:01:42:34 +0200] "GET /.git/config HTTP/1.1" 200 19238 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
172.111.97.6 - - [21/Jul/2026:01:42:35 +0200] "GET /.git/config HTTP/1.1" 200 19238 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
172.111.97.6 - - [21/Jul/2026:01:42:37 +0200] "GET /.git/config HTTP/1.1" 200 19238 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 21:38:30
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 17:38:24.487221 2026] [security2:error] [pid 25901:tid 25901] [client 172.111.97.6:35800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "emhelectric.com"] [uri "/.git/HEAD"] [unique_id "al6VUCi74eHkKS-EyySFdwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-19 01:24:41
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 18 21:24:32.224709 2026] [security2:error] [pid 2806960:tid 2806960] [client 172.111.97.6:27282] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.thomaschemical.com"] [uri "/.git/HEAD"] [unique_id "alwnUM83vnYDQhv-277HgwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-17 23:54:31
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 172.111.97.6 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 17 19:54:27.015895 2026] [security2:error] [pid 16934:tid 16934] [client 172.111.97.6:13842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "asiancommoditiescorporation.com"] [uri "/.git/config"] [unique_id "alrAszoNGC4KyyvN6U8_PAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack