๐ณ๐ด
jad-abuse
2026-08-20 06:30:54
(12 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
๐ง๐ช
voormedia
2026-08-20 04:23:34
(14 hours ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:56:37
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:56:33.606417 2026] [security2:error] [pid 8687:tid 8707] [client 104.23.160.145:11022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nwnative.us"] [uri "/.git/config"] [unique_id "aoZQwTJKfu5T4dw_s_AikQAAAEU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:27:58
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:27:52.675531 2026] [security2:error] [pid 32029:tid 32029] [client 104.23.160.145:13207] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greensandbeans.us"] [uri "/.git/HEAD"] [unique_id "aoZKCLEbwrvBRGjtWgXZ4gAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:12:55
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:12:49.573175 2026] [security2:error] [pid 3487:tid 3487] [client 104.23.160.145:11494] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.infrared-heaters.us"] [uri "/.git/config"] [unique_id "aoZGgREAxGbZECagL_P04gAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 22:37:38
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 18:37:32.693991 2026] [security2:error] [pid 16483:tid 16483] [client 104.23.160.145:12503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.robhoward.me"] [uri "/.git/HEAD"] [unique_id "aoYwLHtYAKwQozSxvSdsdAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-19 21:20:51
(21 hours ago)
[20/Aug/2026:00:20:49 +0300] -- 104.23.160.145 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[20/Aug/2026:00:20:49 +0300] -- 104.23.160.145 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ญ๐บ
bcsaba
2026-08-19 16:33:08
(1 day ago)
Probing for .git:
104.23.160.145 - - [19/Aug/2026:18:33:07 +0200] "GET /.git/HEAD HTTP/2.0" 403 146 ...
show more
Probing for .git:
104.23.160.145 - - [19/Aug/2026:18:33:07 +0200] "GET /.git/HEAD HTTP/2.0" 403 146 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 08:48:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 04:48:25.257276 2026] [security2:error] [pid 8669:tid 8669] [client 104.23.160.145:13478] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.magacine.tv"] [uri "/.git/HEAD"] [unique_id "aoVt2RJRYRbGftarx4vvcAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 08:04:11
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 04:04:03.886078 2026] [security2:error] [pid 25318:tid 25318] [client 104.23.160.145:13191] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.papelandia.com.ve"] [uri "/.git/config"] [unique_id "aoVjc5HHLxWqYL-br1OEIAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 06:12:52
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.145 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 02:12:48.099485 2026] [security2:error] [pid 27040:tid 27040] [client 104.23.160.145:12375] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.revision.ws"] [uri "/.git/config"] [unique_id "aoVJYAkBAG7WgY9R42q8CwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-07-22 16:20:05
(4 weeks ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ฎ๐น
IRT@Unisi
2026-07-21 22:26:09
(4 weeks ago)
anomaly:tcp_dst_session,1001>threshold1000,repeats511timessincelastlog
DDoS Attack
๐ฉ๐ช
acadeova
2026-05-25 12:40:30
(2 months ago)
๐จ Recon detected (nft drop)
SRC=104.23.160.145
Observed=TCP dpt=80 in=enp0s6 ttl=52
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.160.145
Observed=TCP dpt=80 in=enp0s6 ttl=52
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
octageeks.com
2026-05-10 04:06:50
(3 months ago)
Wordpress malicious attack:[octawp]
Web App Attack