🇺🇸
TPI-Abuse
2026-09-10 01:08:39
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 21:08:31.067384 2026] [security2:error] [pid 5580:tid 5580] [client 84.32.244.89:52750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "noviasaltovacio.com"] [uri "/.git/info/refs"] [unique_id "aqIDDyqHpL1qbLwJFI44jgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 23:54:07
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 19:54:03.276514 2026] [security2:error] [pid 3389:tid 3389] [client 84.32.244.89:54626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robcohn.com"] [uri "/.git/info/refs"] [unique_id "aqHxm9MUVxFwzeof-AgxcQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
CoreTech srl
2026-09-09 23:03:59
(5 hours ago)
cloudlinux2 fail2ban: 2026-09-10 00:59:45,835 fail2ban.filter [1892]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-10 00:59:45,835 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 84.32.244.89 - 2026-09-10 00:59:45cloudlinux2 fail2ban: 2026-09-10 00:59:47,128 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Unban 180.246.171.247cloudlinux2 fail2ban: 2026-09-10 00:59:57,748 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 142.111.152.174 - 2026-09-10 00:59:56cloudlinux2 fail2ban: 2026-09-10 01:01:04,593 fail2ban.filter [1892]: INFO [plesk-wordpress] Found 136.144.42.162 - 2026-09-10 01:01:03cloudlinux2 fail2ban: 2026-09-10 01:02:13,101 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 34.182.171.140 - 2026-09-10 01:02:12cloudlinux2 fail2ban: 2026-09-10 01:02:11,523 fail2ban.actions [1892]: NOTICE [plesk-modsecurity] Ban 35.247.230.87cloudlinux2 fail2ban: 2026-09-10 01:02:10,810 fail2ban.filter [1892]: INFO [plesk-modsecurity] Found 35.247.230.87 - 2026-09-10 01:02:10cloudlinux2 fail2ban: 2026-09-10 01:02:1
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 22:22:55
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 18:22:49.942227 2026] [security2:error] [pid 18776:tid 18776] [client 84.32.244.89:32948] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.marjorierosenberg.com"] [uri "/.git/info/refs"] [unique_id "aqHcOdlMLNYguStRgFeJ4AAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 10:10:38
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 09 06:10:29.931547 2026] [security2:error] [pid 12260:tid 12260] [client 84.32.244.89:45388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dojoonthego.com"] [uri "/.git/info/refs"] [unique_id "aqEwlZuL0RYMkaMi0DkKwgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇾
armandosaucedo.me
2026-09-09 08:05:11
(20 hours ago)
Threat Intelligence via ARMTI, Web Attack: GET /.git/info/refs?service=git-upload-pack
Web App Attack
🇺🇸
TPI-Abuse
2026-09-09 02:23:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 22:23:20.916731 2026] [security2:error] [pid 28336:tid 28336] [client 84.32.244.89:39726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lapsychiatrist.com"] [uri "/.git/info/refs"] [unique_id "aqDDGIQSm9QFGCQvH6grHgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
mnsf
2026-09-09 00:05:14
(1 day ago)
Abuse Detected (9)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 21:27:38
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 17:27:33.957090 2026] [security2:error] [pid 6490:tid 6490] [client 84.32.244.89:35590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kmindonesia.com"] [uri "/.git/info/refs"] [unique_id "aqB9xRiFaY6WLqYfj9LQKgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 19:31:15
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 15:31:09.262120 2026] [security2:error] [pid 28398:tid 28398] [client 84.32.244.89:35146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.holesandcorners.com"] [uri "/.git/info/refs"] [unique_id "aqBifWQadV1GZ4s0tbEKFwAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇨🇭
lufi
2026-09-08 18:14:25
(1 day ago)
2026-09-08 20:14:24 84.32.244.89: blacklistedPath: /.git/info/refs
...
Web Spam
Brute-Force
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 17:36:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 13:36:16.639036 2026] [security2:error] [pid 12653:tid 12653] [client 84.32.244.89:45432] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.pschitchat.com"] [uri "/.git/info/refs"] [unique_id "aqBHkLVVXireY0_QDVJOKgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 11:30:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 07:30:50.612510 2026] [security2:error] [pid 25331:tid 25331] [client 84.32.244.89:44332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.panama-boat-registration.com"] [uri "/.git/info/refs"] [unique_id "ap_x6mREvrjREbvlBQOqAAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 10:21:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 06:21:44.285760 2026] [security2:error] [pid 1954:tid 1954] [client 84.32.244.89:34246] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tracybur.net"] [uri "/.git/info/refs"] [unique_id "ap_huJgXhFd_5S9kB8fakgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-09-08 08:01:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryser ...
show more
(mod_security) mod_security (id:210492) triggered by 84.32.244.89 (ip-84-32-244-89.010.ptr.cherryservers.net): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 04:01:45.921552 2026] [security2:error] [pid 12828:tid 12828] [client 84.32.244.89:59542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zezel.com"] [uri "/.git/info/refs"] [unique_id "ap_A6eAmV1oHygU2grY9OAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack