๐บ๐ธ
TPI-Abuse
2026-10-01 01:01:59
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 21:01:55.929738 2026] [security2:error] [pid 18346:tid 18346] [client 82.152.132.189:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sistememail.com"] [uri "/.git/info/refs"] [unique_id "ar2xAzMPNrDg29R2nN_8xwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-30 17:54:20
(1 day ago)
[cb-03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[cb-03al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 82.152.132.189 - - [30/Sep/2026:19:54:14 +0200] "GET /.git/info/refs?service=git-upload-pack HTTP/2.0" 301 415 "-" "git/2.43.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 13:33:50
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 09:33:46.960124 2026] [security2:error] [pid 2453:tid 2453] [client 82.152.132.189:43842] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.intergeovial.com"] [uri "/.git/info/refs"] [unique_id "ar0PuonQ72PZoOgg63lM5gAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 10:48:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 06:48:35.503968 2026] [security2:error] [pid 9633:tid 9733] [client 82.152.132.189:40478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mdbscommercialcleaning.com"] [uri "/.git/info/refs"] [unique_id "arzpA4Kk19yhlk99HapqZQAAAc4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 09:30:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:30:52.984897 2026] [security2:error] [pid 9182:tid 9182] [client 82.152.132.189:40564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rmhpolarracing.com"] [uri "/.git/info/refs"] [unique_id "arzWzBHvBOWRsH0x2_VNSgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 16:51:54
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 12:51:45.927898 2026] [security2:error] [pid 669:tid 669] [client 82.152.132.189:41912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mmmetalizing.com"] [uri "/.git/info/refs"] [unique_id "arvsoZMPd99U4Zhc8mstOwAAAH0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-29 12:30:47
(2 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/info/refs. Blocke ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.git/info/refs. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
BlueWire Hosting
2026-09-28 22:57:43
(2 days ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
OceanTreasure
2026-09-28 11:10:53
(3 days ago)
tcp/443; Git smart-HTTP repository clone attempt against an exposed .git directory (/.git/info/refs? ...
show more
tcp/443; Git smart-HTTP repository clone attempt against an exposed .git directory (/.git/info/refs?service=git-upload-pack): "GET /.git/info/refs?service=git-upload-pack" @ 2026-09-28T11:10:53Z [proxy]
show less
Web App Attack
๐บ๐ธ
lnklnx
2026-09-28 03:38:39
(3 days ago)
www.rcmeal.com:443 82.152.132.189 - - [27/Sep/2026:22:38:36 -0500] "GET /.git/info/refs?service=git- ...
show more
www.rcmeal.com:443 82.152.132.189 - - [27/Sep/2026:22:38:36 -0500] "GET /.git/info/refs?service=git-upload-pack HTTP/1.1" 404 4765 "-" "git/2.43.0"
...
show less
Web App Attack
๐ฎ๐ฉ
YoursMan
2026-09-27 13:30:05
(4 days ago)
[Security-Sentinel-WAF] Web exploit scanner probe (Malicious exploit probe) detected and dropped by ...
show more
[Security-Sentinel-WAF] Web exploit scanner probe (Malicious exploit probe) detected and dropped by firewall.
show less
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 11:05:51
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 07:05:47.426364 2026] [security2:error] [pid 18937:tid 18937] [client 82.152.132.189:40404] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mplsmedia.com"] [uri "/.git/info/refs"] [unique_id "arj4i7Jaz0uTtrwBFmscwwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 07:36:05
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 82.152.132.189 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 03:35:59.629937 2026] [security2:error] [pid 13752:tid 13834] [client 82.152.132.189:57446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.forestancestry.com"] [uri "/.git/info/refs"] [unique_id "arjHX37_ikrRer3JLqcgGAAAAcg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
tecnicorioja
2026-09-26 22:00:57
(4 days ago)
(Mod_security)
Web App Attack
Brute-Force
Bad Web Bot
๐ซ๐ท
omartin
2026-09-26 18:36:39
(5 days ago)
Critical Vulnerability Scan detected
Hacking
Brute-Force
Exploited Host
Web App Attack