๐บ๐ธ
TPI-Abuse
2026-08-22 16:45:09
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 12:45:00.947323 2026] [security2:error] [pid 3404:tid 3404] [client 104.22.93.81:10135] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ctrussell.grabnerconsulting.com"] [uri "/.env.production"] [unique_id "aonSDN77_qjylMupVXNosgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ฉ
securejdprop
2026-08-21 06:44:31
(1 day ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-18 04:04:21
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 00:04:15.785729 2026] [security2:error] [pid 10842:tid 10842] [client 104.22.93.81:14018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.judithcaldwell.com"] [uri "/.git/HEAD"] [unique_id "aoPZv-qvCwVwBPp1CEUE6QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 02:18:51
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 22:18:47.497004 2026] [security2:error] [pid 21508:tid 21508] [client 104.22.93.81:10267] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.cityoffoley.gov"] [uri "/.git/config"] [unique_id "aoPBBzZarwkK3-31J5uBbQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-17 13:16:10
(5 days ago)
[MonAug1715:16:05.6801282026][security2:error][pid3549517:tid3549814][client104.22.93.81:0]ModSecuri ...
show more
[MonAug1715:16:05.6801282026][security2:error][pid3549517:tid3549814][client104.22.93.81:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"465\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"mail.aeapcl.ch\"][uri\"/.git/HEAD\"][unique_id\"aoMJlRjgHTPVgHLXSwdTyAAAABQ\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 10:30:27
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 06:30:19.510984 2026] [security2:error] [pid 13756:tid 13756] [client 104.22.93.81:9899] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.artisticheadstones.com"] [uri "/.git/HEAD"] [unique_id "aoLiu0ilWSwtIv6AdFxB3QAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:12:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:12:43.281377 2026] [security2:error] [pid 10866:tid 10932] [client 104.22.93.81:12590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "princesscastlebunkbed.davidholls.com"] [uri "/.git/HEAD"] [unique_id "aoK0a_kW5r9YnREbcDebzAAAAIg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-17 06:32:44
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:28:35
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:28:27.165994 2026] [security2:error] [pid 22462:tid 22471] [client 104.22.93.81:11971] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.charteredfinancialmanager.com"] [uri "/.git/config"] [unique_id "aoKb-2TEqOZMv4iIgjiRqgAAAIY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 02:09:48
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 22:09:41.912190 2026] [security2:error] [pid 21416:tid 21416] [client 104.22.93.81:10999] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.calvarycavaliers.org"] [uri "/.git/HEAD"] [unique_id "aoJtZdhAAU12aUmYyueipQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 08:36:07
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 04:36:03.418988 2026] [security2:error] [pid 31899:tid 31899] [client 104.22.93.81:14262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.gervais-family.com"] [uri "/.git/HEAD"] [unique_id "aoF2c5EZCi6NFP3msvnxZQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 04:58:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:58:51.277718 2026] [security2:error] [pid 19070:tid 19070] [client 104.22.93.81:11301] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.achillespress.com"] [uri "/.git/config"] [unique_id "aoFDi6C-ATa8-lfJJEyd3AAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:34:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:33:57.023895 2026] [security2:error] [pid 28672:tid 28672] [client 104.22.93.81:12516] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.fingercult.com"] [uri "/.git/HEAD"] [unique_id "aoEvpdXtN3jpispoNs8rNgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:17:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:17:52.073784 2026] [security2:error] [pid 3061:tid 3061] [client 104.22.93.81:10635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kclawoffice.com"] [uri "/.git/HEAD"] [unique_id "aoEr4DCAiPmxw_Mp1JBvFQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-15 05:37:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.81 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 01:37:15.048474 2026] [security2:error] [pid 8338:tid 8338] [client 104.22.93.81:12384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.psicotanato.mx.elpais.mx"] [uri "/.git/config"] [unique_id "an_7C_nMQgslDCfLu7QtmQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack