๐ฎ๐ฉ
securejdprop
2026-08-21 09:54:44
(1 day ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐ฌ๐ง
myintarweb
2026-08-17 10:36:33
(5 days ago)
104.22.104.173 - mail.madmick.co.uk [17/Aug/2026:11:36:32 +0100] 443 "GET /.git/HEAD HTTP/2.0" 301 1 ...
show more
104.22.104.173 - mail.madmick.co.uk [17/Aug/2026:11:36:32 +0100] 443 "GET /.git/HEAD HTTP/2.0" 301 1223 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-17 04:09:01
(5 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 22:12:08
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 18:12:04.595836 2026] [security2:error] [pid 7340:tid 7340] [client 104.22.104.173:13097] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "smogsandiego.com"] [uri "/.git/config"] [unique_id "aoI1tLKBy4PENPCYJIYgewAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 08:40:04
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:39:54.932203 2026] [security2:error] [pid 25336:tid 25336] [client 104.22.104.173:11638] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.mrpinman.org"] [uri "/.git/config"] [unique_id "aoF3WjBVFhvFum287vJRygAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:51:10
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:51:06.538686 2026] [security2:error] [pid 16570:tid 16570] [client 104.22.104.173:14010] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.trapper.biz"] [uri "/.git/HEAD"] [unique_id "aoEzqtzIF7TQhh3b2z8NbQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:27:11
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:27:04.968312 2026] [security2:error] [pid 4436:tid 4436] [client 104.22.104.173:10500] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.casaniagara.com.mx"] [uri "/.git/config"] [unique_id "aoEuCKo7R3imW8CKjX9UeAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 21:43:00
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 17:42:52.719476 2026] [security2:error] [pid 4100712:tid 4100712] [client 104.22.104.173:9224] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.neneh.biz"] [uri "/.git/HEAD"] [unique_id "anuXXNJV9c1HSu78AdF3sgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 10:29:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.104.173 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 06:29:51.648336 2026] [security2:error] [pid 1443447:tid 1443447] [client 104.22.104.173:10954] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.almudenastrust.com"] [uri "/.git/HEAD"] [unique_id "anr5n38KxDvIqUEp5I-igAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-09 12:21:37
(1 week ago)
Web App Attack
Anonymous
2026-05-14 04:24:34
(3 months ago)
(caddyscan) Scanner path probe from 104.22.104.173 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 104.22.104.173 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.22.104.173 - - [14/May/2026:03:46:01 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [14/May/2026:04:09:19 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [14/May/2026:04:09:38 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [14/May/2026:04:24:26 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [14/May/2026:04:24:29 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
Anonymous
2026-05-13 23:58:29
(3 months ago)
(caddyscan) Scanner path probe from 104.22.104.173 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 104.22.104.173 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.22.104.173 - - [13/May/2026:23:35:39 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [13/May/2026:23:40:13 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [13/May/2026:23:54:40 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [13/May/2026:23:55:09 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.173 - - [13/May/2026:23:58:25 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐ฆ๐บ
oncord
2026-05-13 05:39:33
(3 months ago)
Form spam
Web Spam
๐ฉ๐ช
Zydzy
2026-05-11 15:05:58
(3 months ago)
Automated attack detected. Server: 95.140.154.181. Jail: nginx-exploit.
Web App Attack
๐ฉ๐ช
F242
2026-05-08 10:20:11
(3 months ago)
Wordpress soft lock
Web App Attack