๐ณ๐ด
jad-abuse
2026-09-01 13:04:34
(13 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 23:57:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:56:54.879280 2026] [security2:error] [pid 23024:tid 23024] [client 172.69.223.190:13986] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.title33.com"] [uri "/.git/config"] [unique_id "apNxxnCzHu7L5_FAf710_QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 16:26:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 12:26:47.988060 2026] [security2:error] [pid 4107:tid 4130] [client 172.69.223.190:13807] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.potterpuppetpals.com"] [uri "/.git/config"] [unique_id "apMIR0oV3Mgz37yGhPR4GQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 01:39:27
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 21:39:23.726789 2026] [security2:error] [pid 24516:tid 24516] [client 172.69.223.190:9760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.amychop.com"] [uri "/.git/HEAD"] [unique_id "apDmyzpJ13NTHtDWLo6vxwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 10:14:47
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 06:14:42.844026 2026] [security2:error] [pid 20833:tid 20925] [client 172.69.223.190:9641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gemini.pe"] [uri "/.git/config"] [unique_id "apAOEmB6nzK9v04h_nlPnAAAAQY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-08-27 04:14:29
(5 days ago)
[ThuAug2706:14:24.3941122026][security2:error][pid644717:tid644796][client172.69.223.190:0]ModSecuri ...
show more
[ThuAug2706:14:24.3941122026][security2:error][pid644717:tid644796][client172.69.223.190:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"maxay.ch\"][uri\"/.git/config\"][unique_id\"ao-5oDWzbsDAQmbHNaxKqwAAAIs\"]
show less
Port Scan
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-08-26 22:50:48
(6 days ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 12:51:33
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 08:51:27.665274 2026] [security2:error] [pid 1637:tid 1637] [client 172.69.223.190:12397] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fishleadership.org"] [uri "/.git/config"] [unique_id "ao7hT_-MfMQZUWjsjCLIEAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
thesimonmanuel
2026-08-26 01:05:27
(1 week ago)
172.69.223.190 - - [26/Aug/2026:06:35:26 +0530] "GET /.git/HEAD HTTP/1.1" 404 143 "-" "Mozilla/5.0 ( ...
show more
172.69.223.190 - - [26/Aug/2026:06:35:26 +0530] "GET /.git/HEAD HTTP/1.1" 404 143 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" "172.69.223.190"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 22:55:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 18:55:23.069977 2026] [security2:error] [pid 12682:tid 12682] [client 172.69.223.190:12968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.gizmolabs.net"] [uri "/.git/HEAD"] [unique_id "aot6W4q8zZBvG-9hM6ALOQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 14:55:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 10:55:08.851078 2026] [security2:error] [pid 31593:tid 31593] [client 172.69.223.190:11374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thepinman.org"] [uri "/.git/HEAD"] [unique_id "aom4TOgZs7XIC0KX4ReLFQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-20 15:51:51
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 11:36:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 07:36:21.502394 2026] [security2:error] [pid 14614:tid 14614] [client 172.69.223.190:10639] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.darnorb.com"] [uri "/.git/HEAD"] [unique_id "aoRDtXfkxd5wv1UuQa5oXgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 10:36:07
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 06:36:03.190420 2026] [security2:error] [pid 21234:tid 21234] [client 172.69.223.190:9376] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.lusineweb.com"] [uri "/.git/HEAD"] [unique_id "aoQ1kxYxzsHt85c60s8p8wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 03:37:58
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.69.223.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:37:51.742047 2026] [security2:error] [pid 24679:tid 24707] [client 172.69.223.190:11063] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.coloradosellers.com"] [uri "/.git/HEAD"] [unique_id "aoPTj5A3Bfx1QXu7SoOhhQAAAY0"]
show less
Brute-Force
Bad Web Bot
Web App Attack