๐ฎ๐ฉ
securejdprop
2026-08-24 23:32:06
(21 hours ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 11:22:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 07:22:38.838492 2026] [security2:error] [pid 20176:tid 20176] [client 104.22.100.165:10407] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "austinbiblestudents.grabnerconsulting.com"] [uri "/.git/config"] [unique_id "aoLu_gn0HN03xeOx5V4eggAAACA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 10:43:58
(1 week ago)
(mod_security) mod_security (id:949110) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 06:43:51.892972 2026] [security2:error] [pid 2180:tid 2180] [client 104.22.100.165:11857] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "tikehaubookings.com"] [uri "/.git/HEAD"] [unique_id "aoLl57L_z02D6kn3251UzgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-17 09:51:54
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:38:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:38:30.352980 2026] [security2:error] [pid 1758:tid 1822] [client 104.22.100.165:10170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.oldpl8s.com"] [uri "/.git/config"] [unique_id "aoLWlsbHfhT1DYlLVDvc4QAAAVc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:04:04
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:03:57.033863 2026] [security2:error] [pid 5592:tid 5592] [client 104.22.100.165:11659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.oldmaninthepeanut.com"] [uri "/.git/config"] [unique_id "aoLOfdk43iNllfq-vkdMVAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:16:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:16:50.353931 2026] [security2:error] [pid 20578:tid 20578] [client 104.22.100.165:14253] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.menagri.com"] [uri "/.git/HEAD"] [unique_id "aoK1YjPXFF1UmKzjpvPXNQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:32:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:32:19.898102 2026] [security2:error] [pid 14304:tid 14304] [client 104.22.100.165:12265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bhartman.com"] [uri "/.git/HEAD"] [unique_id "aoKq81i3huMqmv1kgzuO9QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:03:09
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:03:02.336466 2026] [security2:error] [pid 10866:tid 10954] [client 104.22.100.165:11281] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.emgusa.com"] [uri "/.git/HEAD"] [unique_id "aoKkFvkW5r9YnREbcDeWdwAAAJY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:37:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:36:53.538265 2026] [security2:error] [pid 9719:tid 9719] [client 104.22.100.165:9744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.tremulant.com"] [uri "/.git/HEAD"] [unique_id "aoKd9Rp1m1lah2v79qEPTAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:12:28
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:12:21.338345 2026] [security2:error] [pid 13222:tid 13246] [client 104.22.100.165:13400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.gelatoconsapevole.it"] [uri "/.git/HEAD"] [unique_id "aoJR5dDTcaQUSMFR9lxDIAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-16 22:59:11
(1 week ago)
[17/Aug/2026:01:59:11 +0300] -- 104.22.100.165 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[17/Aug/2026:01:59:11 +0300] -- 104.22.100.165 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-16 22:01:27
(1 week ago)
Auto-ban: >3000 req/min op 2026-08-16
Web App Attack
SSH
Hacking
Anonymous
2026-08-16 10:15:03
(1 week ago)
suspicious request in access.log
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 08:42:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.100.165 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:42:38.275707 2026] [security2:error] [pid 31425:tid 31425] [client 104.22.100.165:10129] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.delicatessefoods.com"] [uri "/.git/HEAD"] [unique_id "aoF3_gNOSJ2El4Rd39hScwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack