๐บ๐ธ
TPI-Abuse
2026-10-04 05:15:32
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 01:15:25.014015 2026] [security2:error] [pid 6069:tid 6069] [client 172.68.213.102:9799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.haywardcarpentry.com"] [uri "/.git/config"] [unique_id "asHg7U6I7swC3o9lb7RU-wAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-10-03 15:15:17
(1 week ago)
Probing for .git:
172.68.213.102 - - [03/Oct/2026:17:15:09 +0200] "GET /.git/config HTTP/2.0" 403 14 ...
show more
Probing for .git:
172.68.213.102 - - [03/Oct/2026:17:15:09 +0200] "GET /.git/config HTTP/2.0" 403 146 "-" "curl/8.4.0"
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-10-02 18:28:49
(1 week ago)
[02/Oct/2026:21:28:49 +0300] -- 172.68.213.102 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.en ...
show more
[02/Oct/2026:21:28:49 +0300] -- 172.68.213.102 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.env.example HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 13:31:09
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 09:31:06.030917 2026] [security2:error] [pid 20966:tid 20990] [client 172.68.213.102:14193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tnccivic.org"] [uri "/.git/config"] [unique_id "ar-yGsbd4iC4w3b_J-bUdAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 13:05:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 09:05:20.573451 2026] [security2:error] [pid 2747:tid 2747] [client 172.68.213.102:10549] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "texassportsmansassociation.org"] [uri "/.git/config"] [unique_id "ar-sEFLz9iNv1WRCmg7uzQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 07:34:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 03:34:50.252041 2026] [security2:error] [pid 3872:tid 3872] [client 172.68.213.102:12170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icbsmonitor.net"] [uri "/.git/config"] [unique_id "ar9emkbyY0V88x070rr9qgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 05:13:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 01:13:36.479934 2026] [security2:error] [pid 10119:tid 10144] [client 172.68.213.102:12530] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ellicottville.net"] [uri "/.git/config"] [unique_id "ar89gE3Imsb2teIFY1bwBQAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 04:44:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 00:43:53.216262 2026] [security2:error] [pid 29990:tid 29990] [client 172.68.213.102:11100] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "safetyfastclub.com"] [uri "/.git/config"] [unique_id "ar82iWi0XDUWpeXO18IuAwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 02:08:06
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 22:08:02.284495 2026] [security2:error] [pid 18731:tid 18731] [client 172.68.213.102:13816] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "belgiophar.net"] [uri "/.git/config"] [unique_id "ar8SAosDKxwdYoVsEYwJwgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 07:44:07
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 03:44:02.683402 2026] [security2:error] [pid 10132:tid 10132] [client 172.68.213.102:13818] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "riser-astrology.com"] [uri "/.git/config"] [unique_id "ary9wlGOwpR0_9uIL--fmwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 02:17:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.68.213.102 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 22:17:33.593341 2026] [security2:error] [pid 7303:tid 7303] [client 172.68.213.102:10748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "giantfern.com"] [uri "/.git/config"] [unique_id "arxxPSQFMXPfVz5rS1FxcwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-09-30 00:19:51
(1 week ago)
[30/Sep/2026:03:19:50 +0300] -- 172.68.213.102 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET ...
show more
[30/Sep/2026:03:19:50 +0300] -- 172.68.213.102 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /wp-config.php.bak HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-09-29 06:18:57
(1 week ago)
[TueSep2908:18:52.6680842026][security2:error][pid492709:tid492805][client172.68.213.102:0]ModSecuri ...
show more
[TueSep2908:18:52.6680842026][security2:error][pid492709:tid492805][client172.68.213.102:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"710\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"safertechnics.ch\"][uri\"/.git/config\"][unique_id\"artYTL7SuoUV06ApAcN5zQAAAQY\"]
show less
Hacking
Web App Attack
๐ฎ๐น
[email protected]
2026-09-28 22:46:44
(1 week ago)
172.68.213.102 - - [29/Sep/2026:00:46:43 +0200] "GET /.git/config HTTP/2.0" 404 460 "-" "curl/8.4.0"
Web App Attack
Hacking
๐ณ๐ฑ
homeshowdomain.nl
2026-09-27 21:59:44
(1 week ago)
Auto-ban: >3000 req/min op 2026-09-27
Web App Attack
SSH
Hacking