๐บ๐ธ
TPI-Abuse
2026-08-26 19:47:36
(22 minutes ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 15:47:32.445477 2026] [security2:error] [pid 12278:tid 12278] [client 104.23.160.210:9640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.hierrosbernal.com"] [uri "/.git/HEAD"] [unique_id "ao9C1IZgvXDMAjTvUw3zcQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 13:20:27
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 09:20:20.990229 2026] [security2:error] [pid 18113:tid 18113] [client 104.23.160.210:12262] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "assheton.com"] [uri "/.git/HEAD"] [unique_id "ao7oFHGIYfYDPeTenoxqowAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:50:33
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:50:30.216349 2026] [security2:error] [pid 8499:tid 8499] [client 104.23.160.210:12503] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.directcap.com"] [uri "/.git/config"] [unique_id "ao7E9kWYNr9QF7oJNj87TAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 02:13:30
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 22:13:23.288045 2026] [security2:error] [pid 471:tid 471] [client 104.23.160.210:13587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cypraea.info"] [uri "/.git/config"] [unique_id "ao5Lwy_mvSGsY1EFvUFprgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 01:51:09
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 21:51:00.997435 2026] [security2:error] [pid 27425:tid 27425] [client 104.23.160.210:10977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.whitetaildetailing.com"] [uri "/.git/HEAD"] [unique_id "ao5GhIreZPancLzo64DjoQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-08-25 23:09:46
(21 hours ago)
CMS/framework probe: 104.23.160.210 - - [26/Aug/2026:01:09:45 +0200] "GET /.git/HEAD HTTP/2.0" 404 5 ...
show more
CMS/framework probe: 104.23.160.210 - - [26/Aug/2026:01:09:45 +0200] "GET /.git/HEAD HTTP/2.0" 404 564 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" asn=13335 org="Cloudflare, Inc." country=US
...
show less
Web App Attack
๐ธ๐ฎ
administrator
2026-08-25 22:04:08
(22 hours ago)
2026-08-24 14:19:33,357 fail2ban.actions [1161]: NOTICE [apache-badbots] Ban 104.23.160.210
...
show more
2026-08-24 14:19:33,357 fail2ban.actions [1161]: NOTICE [apache-badbots] Ban 104.23.160.210
2026-08-24 14:19:33,357 fail2ban.actions [1161]: NOTICE [apache-badbots] Ban 104.23.160.210
2026-08-24 14:19:33,357 fail2ban.actions [1161]: NOTICE [apache-badbots] Ban 104.23.160.210
...
show less
Bad Web Bot
Web Spam
Email Spam
Blog Spam
Port Scan
Brute-Force
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-25 19:50:35
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 17:24:54
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 13:24:47.859827 2026] [security2:error] [pid 26043:tid 26043] [client 104.23.160.210:13463] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "commonthreadsvt.org"] [uri "/.git/HEAD"] [unique_id "ao3P32DueBSr0fQhp9ApNQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 14:59:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 10:59:17.821502 2026] [security2:error] [pid 21355:tid 21355] [client 104.23.160.210:14002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.uglybunnywinery.marshvineyards.com"] [uri "/.git/config"] [unique_id "ao2txTHOBVs2_MHYL2yRbAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-25 11:54:53
(1 day ago)
104.23.160.210 - - [25/Aug/2026:08:54:52 -0300] "GET /.git/HEAD HTTP/2.0" 403 862 "-" "Mozilla/5.0 ( ...
show more
104.23.160.210 - - [25/Aug/2026:08:54:52 -0300] "GET /.git/HEAD HTTP/2.0" 403 862 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-25 08:50:47
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 04:50:38.722322 2026] [security2:error] [pid 27365:tid 27365] [client 104.23.160.210:13361] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.321q.com"] [uri "/.git/HEAD"] [unique_id "ao1XXhqSw2DNHkMmhrJlLQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 01:39:42
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 21:39:36.521698 2026] [security2:error] [pid 29243:tid 29243] [client 104.23.160.210:14000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tedgrob.com"] [uri "/.git/config"] [unique_id "aozyWBIjMyXCBxwVlcgiIAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 00:37:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 20:37:51.452463 2026] [security2:error] [pid 6412:tid 6412] [client 104.23.160.210:14237] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.theblindmantylertx.com"] [uri "/.git/config"] [unique_id "aozj3xH9f_KTPc0sAI8c1wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-24 22:03:27
(1 day ago)
Auto-ban: >3000 req/min op 2026-08-24
Web App Attack
SSH
Hacking