π³π±
homeshowdomain.nl
2026-09-22 21:59:54
(3 days ago)
Auto-ban: >3000 req/min op 2026-09-22
Web App Attack
SSH
Hacking
πΊπΈ
TPI-Abuse
2026-09-22 17:28:03
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:27:58.912432 2026] [security2:error] [pid 30059:tid 30059] [client 82.165.72.125:32952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelandkatie.us"] [uri "/.git/config"] [unique_id "arK6niKAHOgy7upUckCUcAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 17:08:37
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 13:08:32.919255 2026] [security2:error] [pid 13996:tid 13996] [client 82.165.72.125:45632] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "knowyourcode.us"] [uri "/.git/config"] [unique_id "arK2EDt6Rd32fdhnogK6uwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 16:33:31
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 12:33:24.905267 2026] [security2:error] [pid 21447:tid 21447] [client 82.165.72.125:40686] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "galysh.us"] [uri "/.git/config"] [unique_id "arKt1C7EEmuB_WPVJMlA_gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 16:09:36
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 12:09:31.892793 2026] [security2:error] [pid 6718:tid 6718] [client 82.165.72.125:36332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dlptir.us"] [uri "/.git/config"] [unique_id "arKoO4OeX3vdM3YZeRryWAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 15:35:05
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 11:34:59.911185 2026] [security2:error] [pid 11289:tid 11289] [client 82.165.72.125:56392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigblue4.us"] [uri "/.git/config"] [unique_id "arKgI9d-zHTGtZRFr2V0AAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
voormedia
2026-09-22 08:10:00
(4 days ago)
Accessed trap at '/.git/config'
Web App Attack
π³π±
MyGlobalFlowers
2026-09-22 08:08:22
(4 days ago)
Multiple WAF Violations
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 04:10:19
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 22 00:10:17.510177 2026] [security2:error] [pid 8720:tid 8720] [client 82.165.72.125:41944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arrowhead30.com"] [uri "/.git/config"] [unique_id "arH_qRkfFLgTr9Jwz6v3NAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
LRob
2026-09-22 04:03:36
(4 days ago)
This address is looking for secret files on our sites: .git directories, .env files, credential and ...
show more
This address is looking for secret files on our sites: .git directories, .env files, credential and configuration files, database dumps, backups. This is a targeted search for credentials to break into the sites, blocked at the first request. Please check the machine behind it for an attack tool or malware. | method: GET | path: /.git/config | 2026-09-22 04:03 UTC
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 03:50:30
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 23:50:24.485443 2026] [security2:error] [pid 817:tid 817] [client 82.165.72.125:38840] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "armorcorp.com"] [uri "/.git/config"] [unique_id "arH7AOu1vJRt-nUtceztHAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 03:33:41
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 23:33:37.404523 2026] [security2:error] [pid 30631:tid 30713] [client 82.165.72.125:36646] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "arizonasolutionsgroup.com"] [uri "/.git/config"] [unique_id "arH3EYl2KJsAdaeIvP-qAQAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-22 03:14:01
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.165.72.125 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 23:13:54.353196 2026] [security2:error] [pid 19225:tid 19225] [client 82.165.72.125:38244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "argcreativegroup.com"] [uri "/.git/config"] [unique_id "arHycoOt-qO7GOJi_fws3wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¦πΊ
2000cn.com.au
2026-09-22 03:02:16
(4 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-sensitive-files
Web App Attack
Hacking
π±πΊ
conseilgouz
2026-09-22 03:00:06
(4 days ago)
are-17 : Block hidden directories=>/.git/config(/)
Hacking