๐ฆ๐ฑ
router.al
2026-08-31 04:25:32
(22 hours ago)
08/31/2026-04:25:32.130312 104.22.93.96 Protocol: 6 ET WEB_SERVER Next.js Middleware Authorization B ...
show more
08/31/2026-04:25:32.130312 104.22.93.96 Protocol: 6 ET WEB_SERVER Next.js Middleware Authorization Bypass (CVE-2025-29927)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-29 16:11:45
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 12:11:33.201592 2026] [security2:error] [pid 28954:tid 28954] [client 104.22.93.96:13273] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwickanproducts.com"] [uri "/.env.dist"] [unique_id "apMEtWxIwMubt8t1w98qMgAAAAs"], referer: https://www.google.com/search?q=kwickanproducts.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-08-23 04:19:49
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-08-21 06:53:15
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-08-20 06:29:58
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-08-18 23:37:05
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:05:25
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:05:21.019001 2026] [security2:error] [pid 16088:tid 16088] [client 104.22.93.96:10237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.oposicionesyconcursos.es"] [uri "/.git/config"] [unique_id "aoMHEW4J4WabKRYaYglBUwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 11:17:34
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 07:17:26.373694 2026] [security2:error] [pid 22703:tid 22703] [client 104.22.93.96:12130] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.brupharm.org"] [uri "/.git/HEAD"] [unique_id "aoLtxqTtofzNQNckaLlzlAAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-08-17 10:27:47
(2 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 10:04:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 06:04:42.453411 2026] [security2:error] [pid 4176:tid 4176] [client 104.22.93.96:11019] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.pinebrookdesign.com"] [uri "/.git/config"] [unique_id "aoLcuo-P5F9330d4EHOb5gAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:31:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:31:36.067472 2026] [security2:error] [pid 21281:tid 21281] [client 104.22.93.96:9254] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.rimaine.org"] [uri "/.git/config"] [unique_id "aoK42ArNPSKDqDoI2xTaqAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:11:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:11:01.617675 2026] [security2:error] [pid 28447:tid 28447] [client 104.22.93.96:11369] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "supaskills.com"] [uri "/.git/config"] [unique_id "aoK0BbtTtLKvGlpzuSfOMQAAACE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-16 08:42:14
(2 weeks ago)
104.22.93.96 - - [16/Aug/2026:05:42:13 -0300] "GET /.git/HEAD HTTP/2.0" 301 162 "-" "Mozilla/5.0 (X1 ...
show more
104.22.93.96 - - [16/Aug/2026:05:42:13 -0300] "GET /.git/HEAD HTTP/2.0" 301 162 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐บ๐ธ
mawan
2026-08-16 08:17:29
(2 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:19:26
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.93.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:19:18.314919 2026] [security2:error] [pid 16748:tid 16748] [client 104.22.93.96:13934] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.doctoredwinalvarez.com"] [uri "/.git/HEAD"] [unique_id "aoFWZki6aRdJomOsQvjrowAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack