๐ฉ๐ช
4server
2026-10-02 06:30:07
(17 hours ago)
[FriOct0208:30:01.6011742026][security2:error][pid1962388:tid1962503][client206.188.197.66:0]ModSecu ...
show more
[FriOct0208:30:01.6011742026][security2:error][pid1962388:tid1962503][client206.188.197.66:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.10\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.scrspace.com\"][uri\"/.git/info/refs\"][unique_id\"ar9PaQGh5Z74KBzIA9EXfgAAAQI\"]
show less
Port Scan
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-02 03:17:25
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 23:17:21.815505 2026] [security2:error] [pid 20229:tid 20229] [client 206.188.197.66:33532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.catholicshopper.com"] [uri "/.git/info/refs"] [unique_id "ar8iQWRlgPLCcyRHGL_DXgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-01 18:21:05
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 14:20:58.570635 2026] [security2:error] [pid 7883:tid 7883] [client 206.188.197.66:38238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kidswow.net"] [uri "/.git/info/refs"] [unique_id "ar6kihwASH1JL77p3BBsVgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
altenglaner
2026-09-30 23:25:03
(2 days ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
๐ณ๐ฑ
MM-bot
2026-09-30 17:48:07
(2 days ago)
URL-probe: HTTP/2 GET request on /.git/info/refs (2026-09-30 19:48:07 UTC+2)
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-28 16:43:23
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 12:43:19.281708 2026] [security2:error] [pid 30663:tid 30663] [client 206.188.197.66:36544] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "animz.com"] [uri "/.git/info/refs"] [unique_id "arqZJ4gAF6q2IcCtRC2wDAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 15:34:35
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 11:34:26.930947 2026] [security2:error] [pid 885:tid 885] [client 206.188.197.66:32918] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "specialtycomputer.com"] [uri "/.git/info/refs"] [unique_id "arqJAnEd-ualcVDgUJz2IAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-28 15:22:30
(4 days ago)
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-05al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 206.188.197.66 - - [28/Sep/2026:17:22:17 +0200] "GET /.git/info/refs?service=git-upload-pack HTTP/2.0" 404 1920 "-" "git/2.53.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 00:43:01
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 20:42:55.792068 2026] [security2:error] [pid 8704:tid 8731] [client 206.188.197.66:54440] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bbpuertadelsol.com"] [uri "/.git/info/refs"] [unique_id "arm4Dy06Y4BPh4STJXa0TgAAAM8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-28 00:06:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 20:06:44.729748 2026] [security2:error] [pid 1542:tid 1542] [client 206.188.197.66:40806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rodandreelpiercam.com"] [uri "/.git/info/refs"] [unique_id "armvlCOuIO3_RDQUgdETdAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 22:57:29
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 18:57:23.041344 2026] [security2:error] [pid 28899:tid 28906] [client 206.188.197.66:38184] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dpscsde.com"] [uri "/.git/info/refs"] [unique_id "armfUx0xoWDf55C5Re-ofgAAAUU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 18:02:19
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 14:02:15.738862 2026] [security2:error] [pid 5920:tid 5920] [client 206.188.197.66:33070] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "digbiellc.com"] [uri "/.git/info/refs"] [unique_id "arlaJ6LzzS9FGYuwK5cvGgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 13:58:00
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 206.188.197.66 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 09:57:53.318266 2026] [security2:error] [pid 9914:tid 9914] [client 206.188.197.66:56964] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hazeltrane.com"] [uri "/.git/info/refs"] [unique_id "arkg4egRehLjLYNS9WhqqgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-27 01:03:24
(5 days ago)
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-24al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 206.188.197.66 - - [27/Sep/2026:03:03:18 +0200] "GET /.git/info/refs?service=git-upload-pack HTTP/2.0" 301 550 "-" "git/2.53.0"
...
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
sibahota
2026-09-27 00:17:46
(5 days ago)
206.188.197.66 - - [27/Sep/2026:00:17:42 +0000] www.69moods.com "GET /.git/info/refs?service=git-upl ...
show more
206.188.197.66 - - [27/Sep/2026:00:17:42 +0000] www.69moods.com "GET /.git/info/refs?service=git-upload-pack HTTP/1.1" 403 37 0.000 "-" "git/2.53.0" - - - "http://www.69moods.com"
...
show less
Web App Attack
Brute-Force