๐ซ๐ท
chengkev
2026-08-27 14:08:59
(4 weeks ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 09:08:20
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:08:12.741268 2026] [security2:error] [pid 28115:tid 28115] [client 172.68.151.38:13474] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.mandel.vc"] [uri "/.git/HEAD"] [unique_id "ao_-fKbCJ6hso5jryJytqAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
Starburst SysOp Team
2026-08-27 03:40:04
(4 weeks ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-syd2-4)
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 01:57:31
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:57:26.531464 2026] [security2:error] [pid 10296:tid 10296] [client 172.68.151.38:9450] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "khtcpl.com"] [uri "/.git/HEAD"] [unique_id "ao-ZhigKDu15OQTa6uN-0gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 22:28:52
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 18:28:46.705867 2026] [security2:error] [pid 15787:tid 15787] [client 172.68.151.38:10679] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.letceteradesign.kathrynmcbride.com"] [uri "/.git/config"] [unique_id "ao9onoujIwVl0fhRfKbKDgAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 22:01:39
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 18:01:34.770847 2026] [security2:error] [pid 24683:tid 24683] [client 172.68.151.38:14243] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ambarsolar.aguasolar.com"] [uri "/.git/config"] [unique_id "ao9iPmRrDeQolMzxVpDXaAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 18:41:30
(4 weeks ago)
172.68.151.38 - - [26/Aug/2026:18:41:29 +0000] "GET /.git/config HTTP/1.1" 404 45967 "-" "Mozilla/5. ...
show more
172.68.151.38 - - [26/Aug/2026:18:41:29 +0000] "GET /.git/config HTTP/1.1" 404 45967 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 14:27:21
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 10:27:13.639498 2026] [security2:error] [pid 18461:tid 18461] [client 172.68.151.38:13178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.englishmagic.us"] [uri "/.git/HEAD"] [unique_id "ao73wQBO_DWAbCbxvlCVbQAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 13:05:21
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:05:14.987729 2026] [security2:error] [pid 51451:tid 51513] [client 172.68.151.38:14012] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.theaquifer.org"] [uri "/.git/config"] [unique_id "ao7kinBXc4XiPuuTtUjjAQAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 09:29:16
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 05:29:12.735729 2026] [security2:error] [pid 16763:tid 16763] [client 172.68.151.38:12216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.powerkiteforum.com"] [uri "/.git/config"] [unique_id "ao6x6F_g_x-ll1VHA22F2wAAADI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:54:28
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:54:23.057700 2026] [security2:error] [pid 24285:tid 24285] [client 172.68.151.38:11265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.melton.space"] [uri "/.git/config"] [unique_id "ao3Wz3M-oY54WpJdYdxRKgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 01:27:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 21:27:21.103141 2026] [security2:error] [pid 18957:tid 18957] [client 172.68.151.38:11375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bkspeck.com"] [uri "/.git/config"] [unique_id "aozvedxWnXXbayKWBIg99wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 20:52:00
(1 month ago)
(mod_security) mod_security (id:949110) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 16:51:53.380843 2026] [security2:error] [pid 29448:tid 29448] [client 172.68.151.38:9482] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "resilientpathconsulting.net"] [uri "/.git/config"] [unique_id "aoyu6eqIT1gl6HzA1WIOIgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 09:43:31
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 05:43:24.240877 2026] [security2:error] [pid 570:tid 570] [client 172.68.151.38:10676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.ianadolphusthomas.com"] [uri "/.git/config"] [unique_id "aowSPB7PGZ3NDafwYRPnugAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 09:05:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.151.38 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 05:05:27.791617 2026] [security2:error] [pid 13658:tid 13658] [client 172.68.151.38:12888] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.zmgmt.net"] [uri "/.git/config"] [unique_id "aowJV1L7_WIZU6Z-J8Vf5AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack