๐บ๐ธ
TPI-Abuse
2026-07-27 06:30:54
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 02:30:50.823917 2026] [security2:error] [pid 3244326:tid 3244326] [client 185.142.40.255:46292] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "viajeofdesign.bond"] [uri "/admin/.git/HEAD"] [unique_id "amb7GhQ3yWQrfh8k8Ki4swAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 15:41:56
(23 hours ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 11:41:49.414322 2026] [security2:error] [pid 3922256:tid 3922256] [client 185.142.40.255:41000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rodamundo.blog"] [uri "/admin/.git/HEAD"] [unique_id "amYqvQ7O3BjFK43XFIN28AAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 09:45:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 05:45:18.082285 2026] [security2:error] [pid 2985900:tid 2985900] [client 185.142.40.255:24851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "edlee.biz"] [uri "/admin/.git/HEAD"] [unique_id "amXXLsX-srfK2zBdNO-vJwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-26 01:21:09
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 21:21:03.869675 2026] [security2:error] [pid 1631868:tid 1631868] [client 185.142.40.255:46532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cedricwillems.be"] [uri "/admin/.git/HEAD"] [unique_id "amVg_0arN26PJyU6Z_VKjgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
YF
2026-07-26 01:00:27
(1 day ago)
Git HEAD exposure probe
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-07-25 18:19:13
(1 day ago)
[Sun Jul 26 04:19:12.764401 2026] [security2:error] [pid 808285] [client 185.142.40.255:5328] [clien ...
show more
[Sun Jul 26 04:19:12.764401 2026] [security2:error] [pid 808285] [client 185.142.40.255:5328] [client 185.142.40.255] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "shotbysuzanne.com.au"] [uri "/admin/.git/HEAD"] [unique_id "amT-IK3YNxaeh0DobLNyZQAAAAc"]
...
show less
Web App Attack
๐ฆ๐บ
2000cn.com.au
2026-07-25 13:41:06
(2 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-25 09:56:25
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jul 25 05:56:18.839089 2026] [security2:error] [pid 868698:tid 868698] [client 185.142.40.255:32981] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ferienwohnungen-eva.at"] [uri "/admin/.git/HEAD"] [unique_id "amSIQhMJGfWOqtF_3XmC3gAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
afleventoffice.com.au
2026-07-25 05:14:32
(2 days ago)
GET /admin/.git/HEAD HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 03:55:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 23:55:13.296947 2026] [security2:error] [pid 1153761:tid 1153761] [client 185.142.40.255:42480] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrepoch.art"] [uri "/admin/.git/HEAD"] [unique_id "amQzoY4vfZrLZv3FrWZBowAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-25 03:30:21
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.142.40.255 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 23:30:16.541259 2026] [security2:error] [pid 1798782:tid 1798782] [client 185.142.40.255:57934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "campbellfrost.art"] [uri "/admin/.git/HEAD"] [unique_id "amQtyHMSpBS6_XNjuDOxmQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
mxbl
2026-07-25 00:30:05
(2 days ago)
Scanning for CMS vulnerabilities on a non-CMS system: /admin/.git/HEAD
Web App Attack
๐ฟ๐ฆ
conure
2026-07-24 18:06:42
(2 days ago)
csagent: score 18.4: secrets grab x2, 404 noise floor x2; 2 domain(s) in 39s
Web App Attack
๐บ๐ธ
kosada.com
2026-07-03 12:17:22
(3 weeks ago)
Web bot: denial-of-service flood
DDoS Attack
Bad Web Bot
๐น๐ผ
kk_it_man
2026-05-16 08:30:04
(2 months ago)
honey catch
Port Scan