Anonymous
2026-08-28 04:33:54
(4 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-27 11:50:38
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:50:34.173784 2026] [security2:error] [pid 24565:tid 24565] [client 172.68.175.29:12316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.catnameslist.com"] [uri "/.git/HEAD"] [unique_id "apAkilPPtdT3Gqrv6kEqZwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 11:37:41
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 11:19:22
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 07:19:18.399612 2026] [security2:error] [pid 30486:tid 30486] [client 172.68.175.29:10289] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.teenybikinigirls.com"] [uri "/.git/HEAD"] [unique_id "apAdNprUOBVX605FMxpzpwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:54:34
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:54:29.689238 2026] [security2:error] [pid 23679:tid 23679] [client 172.68.175.29:10178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jamesallenwalker.com"] [uri "/.git/HEAD"] [unique_id "ao_RFW7gtY6jfDWKBBLixwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 11:37:23
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 07:37:15.959918 2026] [security2:error] [pid 11082:tid 11082] [client 172.68.175.29:14009] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.agworldmissions.org"] [uri "/.git/config"] [unique_id "ao7P60jilJBhqU7SLMzW_AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2026-08-26 11:00:27
(5 days ago)
/.git/config
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:25:10
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:25:00.448091 2026] [security2:error] [pid 5701:tid 5701] [client 172.68.175.29:11840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "malinka.us"] [uri "/.git/HEAD"] [unique_id "ao6-_Mh1XHZW4pNiJ2vjAgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-08-26 10:02:39
(6 days ago)
172.68.175.29 - - [26/Aug/2026:04:02:39 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5.0 ...
show more
172.68.175.29 - - [26/Aug/2026:04:02:39 -0600] "GET /.git/config HTTP/2.0" 300 4342 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-26 05:07:03
(6 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.68.175.29 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.68.175.29 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:14:36
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:14:29.395528 2026] [security2:error] [pid 28403:tid 28403] [client 172.68.175.29:11695] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.angelaridgwaydressage.com"] [uri "/.git/config"] [unique_id "ao5oJaFujylcDXOl6yR-MwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 03:48:25
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 23:48:20.859605 2026] [security2:error] [pid 9155:tid 9155] [client 172.68.175.29:9600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rosecityexpress.com"] [uri "/.git/config"] [unique_id "ao5iBDy1SQmF4UNcSOrGmwAAAF0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 00:34:34
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 20:34:29.689141 2026] [security2:error] [pid 16597:tid 16597] [client 172.68.175.29:13434] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.78cardsofthetarot-tarotmancy-tarot-cards-and-tarot-readings.com"] [uri "/.git/config"] [unique_id "ao40lfCdM3E3yZrtKRQByQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 21:17:38
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 17:17:34.320918 2026] [security2:error] [pid 24699:tid 24699] [client 172.68.175.29:13576] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.mariannehansen.com"] [uri "/.git/config"] [unique_id "ao4GbkAwUA5En6VLPUlb8AAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 19:22:25
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.29 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 15:22:17.358028 2026] [security2:error] [pid 8749:tid 8749] [client 172.68.175.29:13542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "calendar.freedomfactoryteam.com"] [uri "/.git/HEAD"] [unique_id "ao3raeXgK9IbEqcbSAO9cQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack