๐บ๐ธ
TPI-Abuse
2026-09-03 18:55:18
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:54:56.424024 2026] [security2:error] [pid 19503:tid 19503] [client 104.22.66.108:13990] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kleens-uk.com"] [uri "/.git/HEAD"] [unique_id "apnCgP2mMIUp1uOnwLBw3wAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-22 22:25:53
(1 week ago)
104.22.66.108 - - [23/Aug/2026:01:25:52 +0300] "GET /static../etc/passwd HTTP/2.0" 404 1 "-" "Mozill ...
show more
104.22.66.108 - - [23/Aug/2026:01:25:52 +0300] "GET /static../etc/passwd HTTP/2.0" 404 1 "-" "Mozilla/5.0 (compatible; Amzn-SearchBot/1.0; +https://developer.amazon.com/support/amazonbot)"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:40:22
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:40:18.622360 2026] [security2:error] [pid 22800:tid 22800] [client 104.22.66.108:13407] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.globalmonitoringinc.com"] [uri "/.git/config"] [unique_id "aoO4AqYt20LW6ID45N5rhwAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:52:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:52:34.065310 2026] [security2:error] [pid 18803:tid 18803] [client 104.22.66.108:13605] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.gormish.org"] [uri "/.git/HEAD"] [unique_id "aoKFgqzkHv9CI5NNOZRUDAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:25:39
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:25:33.944277 2026] [security2:error] [pid 29668:tid 29706] [client 104.22.66.108:10541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.classactionlawsuit.org"] [uri "/.git/config"] [unique_id "aoJ_LQ_BaMAqkf6y1gOyNQAAAVY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:13:59
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:13:52.510781 2026] [security2:error] [pid 12900:tid 12900] [client 104.22.66.108:10496] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ahijado.org"] [uri "/.git/HEAD"] [unique_id "aoJgUBdbs2D_vENvFjNIBwAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 11:20:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 07:20:40.778093 2026] [security2:error] [pid 16130:tid 16130] [client 104.22.66.108:11446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rocksolidhomebuilders.com"] [uri "/.git/config"] [unique_id "aoGdCLIOyJKtEh_-O0YWowAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 08:53:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:52:59.807978 2026] [security2:error] [pid 18167:tid 18167] [client 104.22.66.108:9650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.wcurtislloyd.com"] [uri "/.git/config"] [unique_id "aoF6a5vdJUZjliaSHPMEaQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:59:45
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:59:39.914098 2026] [security2:error] [pid 17201:tid 17201] [client 104.22.66.108:10774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.railsolutions.mx"] [uri "/.git/config"] [unique_id "aoFt62zccF0laHDntpWomgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
iNetWorker
2026-08-16 03:14:32
(2 weeks ago)
trolling for resource vulnerabilities
Web App Attack
๐ฉ๐ช
abdubhai
2026-07-30 06:07:49
(1 month ago)
104.22.66.108 - - [30/Jul/2026:1
...
Brute-Force
Anonymous
2026-07-05 09:32:14
(1 month ago)
suricata IPS/IDS detection, ruleset ET EXPLOIT GraphQL Introspection Query Attempt
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-25 03:30:00
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.66.108 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 23:29:51.987244 2026] [security2:error] [pid 24200:tid 24200] [client 104.22.66.108:10465] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lspfest.com"] [uri "/.env.development"] [unique_id "ahPCLx0Q6eMC6MkoMyhRzwAAAAM"], referer: https://www.google.com/search?q=cpanel.lspfest.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
conrad10781
2026-05-12 00:18:28
(3 months ago)
nginx-dot-env
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-07 22:02:40
(3 months ago)
Auto-ban: >3000 req/min op 2026-05-07
Web App Attack
SSH
Hacking