πΊπΈ
TPI-Abuse
2026-10-09 08:55:34
(11 hours ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 04:55:30.080869 2026] [security2:error] [pid 17837:tid 17837] [client 51.159.161.210:53074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "artattackgraphics.com"] [uri "/.git/info/refs"] [unique_id "asisAoI9Ud7GfUuTlWc8xAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 22:22:58
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 08 18:22:54.349943 2026] [security2:error] [pid 7732:tid 7732] [client 51.159.161.210:52846] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.nashtechnologies.net"] [uri "/.git/info/refs"] [unique_id "asgXvrEUPxbNXUEoER0NTgAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-08 00:39:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 20:39:15.634450 2026] [security2:error] [pid 920:tid 920] [client 51.159.161.210:59084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.brbcash.com"] [uri "/.git/info/refs"] [unique_id "asbmM6BIxOtSGHka4dzTdwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-07 08:34:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Oct 07 04:34:15.558787 2026] [security2:error] [pid 12809:tid 12809] [client 51.159.161.210:49756] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oligofoundry.com"] [uri "/.git/info/refs"] [unique_id "asYEB0BAsLIMbKDjm_XtXQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-04 14:17:50
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 10:17:42.529691 2026] [security2:error] [pid 3439:tid 3439] [client 51.159.161.210:45538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jmwilliamsrealty.com"] [uri "/.git/info/refs"] [unique_id "asJgBsi0WyBJwhOAsYhdeQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-03 12:45:08
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 08:45:02.679740 2026] [security2:error] [pid 16463:tid 16463] [client 51.159.161.210:48250] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "uppermotradingco.com"] [uri "/.git/info/refs"] [unique_id "asD4zjkXSy3M_en24Wj5ZwAAAC0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-03 09:58:12
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Oct 03 05:58:08.048645 2026] [security2:error] [pid 22948:tid 22955] [client 51.159.161.210:38972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.siraceservices.com"] [uri "/.git/info/refs"] [unique_id "asDRsHslqhBGgGMEH0KGkwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-03 02:24:41
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 22:24:37.845861 2026] [security2:error] [pid 6097:tid 6097] [client 51.159.161.210:60614] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eydebrothers.com"] [uri "/.git/info/refs"] [unique_id "asBnZTsbXtBfrfJ05dxWPwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-10-02 03:07:09
(1 week ago)
Secret file probe | method: GET | path: /.git/info/refs | ua: git/2.53.0
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 05:49:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 01:49:40.255561 2026] [security2:error] [pid 21936:tid 21936] [client 51.159.161.210:51276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ssl-grp.com"] [uri "/.git/info/refs"] [unique_id "ar30dHw3FKsvkGLkZE_E0QAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 03:36:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 23:36:37.228688 2026] [security2:error] [pid 24046:tid 24046] [client 51.159.161.210:56206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "professionalpianomoversinc.com"] [uri "/.git/info/refs"] [unique_id "ar3VRQwkM-v8G5wUpcYymgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Alt255
2026-09-29 18:36:14
(1 week ago)
[cb-06al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-06al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 51.159.161.210 - - [29/Sep/2026:20:35:54 +0200] "GET /.git/info/refs?service=git-upload-pack HTTP/2.0" 404 1338 "-" "git/2.53.0"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 06:16:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 02:16:23.808272 2026] [security2:error] [pid 25383:tid 25383] [client 51.159.161.210:40998] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "antimu.com"] [uri "/.git/info/refs"] [unique_id "artXtx-5We38TuLVZuKwJQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
jkhorvath.com
2026-09-29 00:53:52
(1 week ago)
Request for URL /.git/info/refs?service=git-upload-pack
Phishing
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-28 09:22:37
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cl ...
show more
(mod_security) mod_security (id:210492) triggered by 51.159.161.210 (210-161-159-51.instances.scw.cloud): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 28 05:22:34.014011 2026] [security2:error] [pid 4019:tid 4019] [client 51.159.161.210:58216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "glslightingandcontrols.com"] [uri "/.git/info/refs"] [unique_id "arox2lhlYCi-2TCNlGOkfwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack