๐บ๐ธ
TPI-Abuse
2026-08-23 23:04:40
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 19:04:36.281298 2026] [security2:error] [pid 22314:tid 22314] [client 172.68.175.53:10876] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "marijuanajoint.com"] [uri "/.git/HEAD"] [unique_id "aot8hJMWhp3fbOv_BAF9FgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-08-23 02:50:04
(1 day ago)
CMS/framework probe: 172.68.175.53 - - [23/Aug/2026:04:50:04 +0200] "GET /.git/config HTTP/2.0" 404 ...
show more
CMS/framework probe: 172.68.175.53 - - [23/Aug/2026:04:50:04 +0200] "GET /.git/config HTTP/2.0" 404 564 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" asn=13335 org="Cloudflare, Inc." country=US
...
show less
Web App Attack
๐ฉ๐ช
mxbl
2026-08-23 02:05:03
(1 day ago)
Scanning for CMS vulnerabilities on a non-CMS system: /.git/HEAD
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-22 23:12:14
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
McClay
2026-08-22 04:30:46
(1 day ago)
Illegal access attempt:172.68.175.53 - - [22/Aug/2026:06:30:45 +0200] "GET /.git/config HTTP/1.1" 40 ...
show more
Illegal access attempt:172.68.175.53 - - [22/Aug/2026:06:30:45 +0200] "GET /.git/config HTTP/1.1" 401 5290 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ง๐ช
madeit
2026-08-21 22:42:27
(2 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 12:51:37
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 08:51:30.819742 2026] [security2:error] [pid 28898:tid 28898] [client 172.68.175.53:10850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oxford-gliding-club.co.uk"] [uri "/.git/config"] [unique_id "aohJ0jCgPjar0w_D195GhgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 05:12:59
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 01:12:55.622826 2026] [security2:error] [pid 8669:tid 8669] [client 172.68.175.53:10436] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.mastersonsmotel.ca"] [uri "/.git/HEAD"] [unique_id "aofeV-vm-z_Cx8TVO88apAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 02:36:52
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 22:36:45.111222 2026] [security2:error] [pid 23352:tid 23352] [client 172.68.175.53:12909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.fiestadj.com.mx"] [uri "/.git/HEAD"] [unique_id "aoZoPanE_gp52NZr9GDYRwAAAEo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:55:35
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:55:27.843245 2026] [security2:error] [pid 877:tid 877] [client 172.68.175.53:12217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.janner.us"] [uri "/.git/HEAD"] [unique_id "aoZQfzfwLO3tu1PbtOIx_gAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:36:24
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:36:20.659584 2026] [security2:error] [pid 26224:tid 26224] [client 172.68.175.53:10513] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.3905ccn.us"] [uri "/.git/HEAD"] [unique_id "aoZMBAg8d6rfj6ohUka7AwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:12:18
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:12:13.296139 2026] [security2:error] [pid 25838:tid 25838] [client 172.68.175.53:11895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arofish.us"] [uri "/.git/config"] [unique_id "aoZGXX78yU7ow3K7GEQ_HwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-19 21:24:31
(4 days ago)
[20/Aug/2026:00:24:31 +0300] -- 172.68.175.53 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[20/Aug/2026:00:24:31 +0300] -- 172.68.175.53 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 18:29:07
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.53 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 14:29:03.366346 2026] [security2:error] [pid 30800:tid 30800] [client 172.68.175.53:13963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.totenclaus.es"] [uri "/.git/HEAD"] [unique_id "aoX170VWprv6wBy3kQpK9wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-19 16:54:59
(4 days ago)
GET /.git/config HTTP/1.1
...
Web App Attack