๐บ๐ธ
TPI-Abuse
2026-08-28 05:50:30
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 01:50:22.692448 2026] [security2:error] [pid 28121:tid 28121] [client 172.68.175.70:11941] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.wsdtc.net"] [uri "/.git/HEAD"] [unique_id "apEhnl_Mt2nPb00XM3rMhAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 20:10:27
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 16:10:19.224729 2026] [security2:error] [pid 13046:tid 13046] [client 172.68.175.70:9571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "allisonokon.com.pseudo.space"] [uri "/.git/HEAD"] [unique_id "apCZq0VwttEzWWOHJhw3QwAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-08-27 15:49:05
(18 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐ณ๐ด
jad-abuse
2026-08-27 11:07:07
(22 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-27 10:30:42
(23 hours ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.68.175.70 (US/United States/-): ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 172.68.175.70 (US/United States/-): 1 in the last 3600 secs
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 07:50:33
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 02:05:44
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 22:05:41.128091 2026] [security2:error] [pid 31202:tid 31202] [client 172.68.175.70:10062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sitexpress.es"] [uri "/.git/HEAD"] [unique_id "ao-bdfD1hHjOY_LB4W9-fgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 01:08:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:08:26.137946 2026] [security2:error] [pid 23203:tid 23203] [client 172.68.175.70:12719] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vintagetejas.com"] [uri "/.git/HEAD"] [unique_id "ao-OCi6DnA9RR9oozEv6gwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:19:28
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:18:52.579414 2026] [security2:error] [pid 3270:tid 3270] [client 172.68.175.70:13980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.fluffmoo.org"] [uri "/.git/HEAD"] [unique_id "ao9YPAgixXV8FAUMlM8WEAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 13:03:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:02:57.277350 2026] [security2:error] [pid 9657:tid 9657] [client 172.68.175.70:10081] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.rohn.com"] [uri "/.git/HEAD"] [unique_id "ao7kAc6muJ33UhGyixliLwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 11:27:55
(1 day ago)
172.68.175.70 - - [26/Aug/2026:11:27:54 +0000] "GET /.git/config HTTP/1.1" 404 30705 "-" "Mozilla/5. ...
show more
172.68.175.70 - - [26/Aug/2026:11:27:54 +0000] "GET /.git/config HTTP/1.1" 404 30705 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 09:46:49
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 05:46:45.889067 2026] [security2:error] [pid 12401:tid 12401] [client 172.68.175.70:9637] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sekel.org"] [uri "/.git/config"] [unique_id "ao62BciZTNHRiWggJuFdKgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:31:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:31:37.794913 2026] [security2:error] [pid 14481:tid 14481] [client 172.68.175.70:13050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.adampayments.com"] [uri "/.git/HEAD"] [unique_id "ao6kaTvZjZZZldY_Grbm0gAAAHI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-26 06:43:18
(2 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 02:35:19
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.175.70 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 22:35:13.519015 2026] [security2:error] [pid 2856:tid 2858] [client 172.68.175.70:12995] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.accsesame.com"] [uri "/.git/HEAD"] [unique_id "ao5Q4fC4Y43mgzP7xUDQmQAAAEA"]
show less
Brute-Force
Bad Web Bot
Web App Attack