๐บ๐ธ
danaimone
2026-08-28 10:40:31
(13 hours ago)
nginx-403: suspicious requests
Web App Attack
๐ณ๐ฑ
wolfemium
2026-08-24 17:01:52
(4 days ago)
104.22.100.12 - - [24/Aug/2026:20:01:50 +0300] "GET /wp-admin/css/wp-login.php HTTP/1.1" 502 150 "-" ...
show more
104.22.100.12 - - [24/Aug/2026:20:01:50 +0300] "GET /wp-admin/css/wp-login.php HTTP/1.1" 502 150 "-" "-"
104.22.100.12 - - [24/Aug/2026:20:01:50 +0300] "GET /wp-includes/Requests/about.php HTTP/1.1" 502 150 "-" "-"
104.22.100.12 - - [24/Aug/2026:20:01:50 +0300] "GET /wp-includes/blocks/query-pagination-next/index.php HTTP/1.1" 502 150 "-" "-"
104.22.100.12 - - [24/Aug/2026:20:01:51 +0300] "GET /wp-includes/Text/index.php HTTP/1.1" 502 150 "-" "-"
104.22.100.12 - - [24/Aug/2026:20:01:51 +0300] "GET /wp-admin/index.php HTTP/1.1" 502 150 "-" "-"
104.22.100.12 - - [24/Aug/2026:20:01:51 +0300] "GET //wp-content/plugins/index.php HTTP/1.1" 502 150 "-" "-"
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 12:07:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 08:07:45.754390 2026] [security2:error] [pid 10538:tid 10538] [client 104.22.100.12:9905] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greensealusa.stormstrips.com"] [uri "/.git/HEAD"] [unique_id "aoL5kZ8GBedqsYSLYonrkQAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 11:33:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 07:33:26.800310 2026] [security2:error] [pid 17446:tid 17446] [client 104.22.100.12:12329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.davefortier.com"] [uri "/.git/config"] [unique_id "aoLxhm_YPoI2Xwaj57XUHAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
securejdprop
2026-08-17 11:32:05
(1 week ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 10:34:59
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 06:34:51.038218 2026] [security2:error] [pid 4883:tid 4883] [client 104.22.100.12:13462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "xirin.net.owenmail.com"] [uri "/.git/config"] [unique_id "aoLjywyUaUdLePvRVzSUugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:18:18
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:18:10.193453 2026] [security2:error] [pid 1759:tid 1847] [client 104.22.100.12:13541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.strikeunosports.com"] [uri "/.git/HEAD"] [unique_id "aoLR0n-CxSq_jrfv2xLG5gAAAZU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:37:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:37:29.181315 2026] [security2:error] [pid 7972:tid 7972] [client 104.22.100.12:11907] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.willoughbywolf.com"] [uri "/.git/HEAD"] [unique_id "aoLISfmIUf1Ut5kXwDe3rQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-17 08:05:32
(1 week ago)
104.22.100.12 - - [17/Aug/2026:08:05:31 +0000] "GET /.git/config HTTP/1.1" 404 51106 "-" "Mozilla/5. ...
show more
104.22.100.12 - - [17/Aug/2026:08:05:31 +0000] "GET /.git/config HTTP/1.1" 404 51106 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:40:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:39:58.543770 2026] [security2:error] [pid 14733:tid 14733] [client 104.22.100.12:14023] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.globalsolutions.technology"] [uri "/.git/config"] [unique_id "aoK6zhRvEnP8JQ_RBS4OZQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:43:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:43:48.559706 2026] [security2:error] [pid 27781:tid 27781] [client 104.22.100.12:10215] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.canebrakes.com"] [uri "/.git/HEAD"] [unique_id "aoKtpAmDWEHE3m8HMfMRsgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:51:43
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:51:36.226020 2026] [security2:error] [pid 6487:tid 6487] [client 104.22.100.12:13603] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.manzilly.com"] [uri "/.git/HEAD"] [unique_id "aoKhaAm72wPPIHPXlpCm0gAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:34:51
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:34:42.809279 2026] [security2:error] [pid 5567:tid 5567] [client 104.22.100.12:13691] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sifnosgreekcatering.com"] [uri "/.git/HEAD"] [unique_id "aoKdctI2nwYGn72RO4dfowAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-16 22:52:29
(1 week ago)
[17/Aug/2026:01:52:28 +0300] -- 104.22.100.12 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[17/Aug/2026:01:52:28 +0300] -- 104.22.100.12 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 08:10:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.12 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:10:50.331233 2026] [security2:error] [pid 19491:tid 19491] [client 104.22.100.12:14271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.gayebrown.tulsatvmemories.com"] [uri "/.git/HEAD"] [unique_id "aoFwiuRC4hicpY_tWoKSOwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack