๐บ๐ธ
TPI-Abuse
2026-09-16 11:13:55
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 07:13:51.313542 2026] [security2:error] [pid 32420:tid 32420] [client 84.32.244.82:42656] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "chicagowca.com"] [uri "/.git/info/refs"] [unique_id "aqp571GE3KviKpK4VezIHgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
kumiko
2026-09-16 02:48:44
(12 hours ago)
[2026-09-16 05:48:44] Probing for dotfiles
"GET /.git/info/refs?service=git-upload-pack HTTP/2.0" 3 ...
show more
[2026-09-16 05:48:44] Probing for dotfiles
"GET /.git/info/refs?service=git-upload-pack HTTP/2.0" 301
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 01:12:18
(13 hours ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 21:12:13.685800 2026] [security2:error] [pid 19369:tid 19369] [client 84.32.244.82:37176] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelwakim.com"] [uri "/.git/info/refs"] [unique_id "aqns7WnM2ARn_0hHyWJEWwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-15 20:22:34
(18 hours ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 84.32.244.82 - - [15/Sep/2026:22:22:34 +0200] "GET /.git/info/refs?service=git-upload-pack HTTP/1.1" 301 5920 "-" "git/2.43.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-09-15 18:53:39
(20 hours ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-15 04:35:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 15 00:35:03.103808 2026] [security2:error] [pid 14809:tid 14809] [client 84.32.244.82:50670] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mutiful.com"] [uri "/.git/info/refs"] [unique_id "aqjK90KOn23H4Fmu4dfDZQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
Progetto1
2026-09-14 16:50:04
(1 day ago)
Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ธ๐ช
EmK530
2026-09-14 04:15:04
(2 days ago)
URL flagged by RegEx: /.git/info/refs?service=git-upload-pack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 20:32:20
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 16:32:11.557629 2026] [security2:error] [pid 25101:tid 25101] [client 84.32.244.82:56322] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anbruskitchens.com"] [uri "/.git/info/refs"] [unique_id "aqcIS0IrdU0mE1M5QiCB0QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
CoreTech srl
2026-09-13 16:18:56
(2 days ago)
cloudlinux2 fail2ban: 2026-09-13 18:14:20,891 fail2ban.filter [1591]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-13 18:14:20,891 fail2ban.filter [1591]: INFO [plesk-modsecurity] Found 44.203.249.151 - 2026-09-13 18:14:20cloudlinux2 fail2ban: 2026-09-13 18:15:13,056 fail2ban.actions [1591]: NOTICE [plesk-modsecurity] Unban 34.32.98.190cloudlinux2 fail2ban: 2026-09-13 18:16:23,506 fail2ban.filter [1591]: INFO [plesk-wordpress] Found 31.223.152.56 - 2026-09-13 18:16:23cloudlinux2 fail2ban: 2026-09-13 18:17:31,996 fail2ban.filter [1591]: INFO [plesk-modsecurity] Found 84.32.244.106 - 2026-09-13 18:17:31cloudlinux2 fail2ban: 2026-09-13 18:17:49,711 fail2ban.filter [1591]: INFO [plesk-modsecurity] Found 178.18.242.79 - 2026-09-13 18:17:49cloudlinux2 fail2ban: 2026-09-13 18:18:19,572 fail2ban.filter [1591]: INFO [plesk-modsecurity] Found 84.32.244.82 - 2026-09-13 18:18:19cloudlinux2 fail2ban: 2026-09-13 18:18:29,950 fail2ban.filter [1591]: INFO [plesk-modsecurity] Found 178.18.242.79 - 2026-09-13 18:18:29cloudlinux2 fail2ban
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 14:43:29
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 10:43:23.554636 2026] [security2:error] [pid 10008:tid 10008] [client 84.32.244.82:45774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.thegamblefamily.com"] [uri "/.git/info/refs"] [unique_id "aqa2i_4lgjnvzetIcqr3FAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
lespbaj
2026-09-13 10:52:16
(3 days ago)
{"time":"2026-09-13T10:52:15+00:00","ip":"84.32.244.82","method":"GET","uri":"/.git/info/refs?servic ...
show more
{"time":"2026-09-13T10:52:15+00:00","ip":"84.32.244.82","method":"GET","uri":"/.git/info/refs?service=git-upload-pack","ua":"git/2.43.0","referer":""}
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-09-13 10:05:11
(3 days ago)
Abuse Detected (29)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 08:17:36
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 13 04:17:28.163589 2026] [security2:error] [pid 2525525:tid 2525527] [client 84.32.244.82:50110] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "potashbarn.com"] [uri "/.git/info/refs"] [unique_id "aqZcGEHM5vI0z9gfKmIAMAAAAMA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-13 03:35:26
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.82 (ip-84-32-244-82.003.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 12 23:35:19.614374 2026] [security2:error] [pid 29828:tid 29855] [client 84.32.244.82:33734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jd-mason.com"] [uri "/.git/info/refs"] [unique_id "aqYZ92v6daTh7iWDgkZJ7wAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack