๐ฉ๐ช
FeG Deutschland
2026-08-26 20:29:33
(5 hours ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:24:25
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:24:21.725231 2026] [security2:error] [pid 27830:tid 27830] [client 104.23.160.113:9942] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.compmansys.com"] [uri "/.git/HEAD"] [unique_id "ao8hRZ0ySMREg3Q2bXCGXAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
JustMeHere
2026-08-26 11:53:06
(13 hours ago)
[Wed Aug 26 07:53:01.767669 2026] [security2:error] [pid 1313:tid 1356] [client 104.23.160.113:13402 ...
show more
[Wed Aug 26 07:53:01.767669 2026] [security2:error] [pid 1313:tid 1356] [client 104.23.160.113:13402] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.15.0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "www.yorknation.com"] [uri "/.git/HEAD"] [unique_id "ao7TnR8uuhrrAdRVES7cyQAAAM8"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:03:25
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:03:19.012012 2026] [security2:error] [pid 24396:tid 24396] [client 104.23.160.113:10926] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jeanlouisdarville.com"] [uri "/.git/HEAD"] [unique_id "ao6dx9-DosIoGd49A9mSqQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 07:34:17
(18 hours ago)
(mod_security) mod_security (id:949110) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:34:09.854412 2026] [security2:error] [pid 6140:tid 6140] [client 104.23.160.113:12542] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.malolobookings.com"] [uri "/.git/HEAD"] [unique_id "ao6W8W0XY7M8iWzmxLw_MAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:15:31
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:15:26.021779 2026] [security2:error] [pid 30541:tid 30541] [client 104.23.160.113:13330] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.drivernine.com"] [uri "/.git/HEAD"] [unique_id "ao5oXhn6YgkCdDUacCG45QAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-25 21:59:54
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-25
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-25 18:39:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:39:44.539870 2026] [security2:error] [pid 20623:tid 20623] [client 104.23.160.113:14261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cdn.barkdull.org"] [uri "/.git/HEAD"] [unique_id "ao3hcLQOVRc0O_SqD__c9gAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
BlueWire Hosting
2026-08-25 17:55:36
(1 day ago)
High-confidence malicious configuration/VCS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 16:07:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 12:07:44.789867 2026] [security2:error] [pid 25282:tid 25282] [client 104.23.160.113:10116] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.microkerneltechnologies.com"] [uri "/.git/HEAD"] [unique_id "ao290GTqJOAH7U8iyn-3pwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Jochen Pretli
2026-08-25 15:22:31
(1 day ago)
connection to honeypot
Email Spam
Port Scan
๐บ๐ธ
TPI-Abuse
2026-08-25 14:45:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:45:35.724064 2026] [security2:error] [pid 11480:tid 11480] [client 104.23.160.113:12469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.network22.net"] [uri "/.git/config"] [unique_id "ao2qj-6VVJbYff8ET_s9dAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:00:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:59:54.509881 2026] [security2:error] [pid 23772:tid 23772] [client 104.23.160.113:13770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.easyweb-publishing.com"] [uri "/.git/HEAD"] [unique_id "ao2f2nOq4kyBfBIWY-C91gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:47:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:47:48.393062 2026] [security2:error] [pid 8138:tid 8138] [client 104.23.160.113:10249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martaaizenman.com"] [uri "/.git/config"] [unique_id "ao1WtP0WjupM82e11C-5ZQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 08:28:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.113 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:28:23.603004 2026] [security2:error] [pid 2275:tid 2275] [client 104.23.160.113:9850] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jsdavison.com"] [uri "/.git/HEAD"] [unique_id "ao1SJ8huzhMDcBkN4PgFWwAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack