๐ธ๐ฌ
securejdprop
2026-08-28 04:09:47
(14 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/vpatch-git-config.
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-27 22:37:14
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:37:09.555750 2026] [security2:error] [pid 29274:tid 29274] [client 104.23.160.45:13666] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.microscopedia.com"] [uri "/.git/HEAD"] [unique_id "apC8FSeq7wRr2QsDNAR1pQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-27 22:22:43
(20 hours ago)
[28/Aug/2026:01:22:43 +0300] -- 104.23.160.45 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[28/Aug/2026:01:22:43 +0300] -- 104.23.160.45 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 20:42:51
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 16:42:47.583591 2026] [security2:error] [pid 12926:tid 12926] [client 104.23.160.45:9247] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dreamscometruefilms.com"] [uri "/.git/HEAD"] [unique_id "apChRwLBFsT4Msmca5FeJAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
kumiko
2026-08-27 10:31:09
(1 day ago)
[2026-08-27 13:31:08] Probing for dotfiles
"GET /.git/config HTTP/2.0" 403
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 07:02:35
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฎ๐น
CoreTech srl
2026-08-27 06:53:57
(1 day ago)
cloudlinux2 fail2ban: 2026-08-27 08:49:15,224 fail2ban.filter [1775]: INFO [plesk-wordpre ...
show more
cloudlinux2 fail2ban: 2026-08-27 08:49:15,224 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 162.0.229.43 - 2026-08-27 08:49:13cloudlinux2 fail2ban: 2026-08-27 08:49:20,758 fail2ban.filter [1775]: INFO [plesk-wordpress] Found 162.241.194.175 - 2026-08-27 08:49:20cloudlinux2 fail2ban: 2026-08-27 08:49:37,418 fail2ban.actions [1775]: NOTICE [plesk-modsecurity] Unban 136.85.18.53cloudlinux2 fail2ban: 2026-08-27 08:49:45,030 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 104.23.160.44 - 2026-08-27 08:49:44cloudlinux2 fail2ban: 2026-08-27 08:49:45,017 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 104.23.160.45 - 2026-08-27 08:49:44cloudlinux2 fail2ban: 2026-08-27 08:50:42,232 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 170.101.96.54 - 2026-08-27 08:50:42cloudlinux2 fail2ban: 2026-08-27 08:51:01,179 fail2ban.filter [1775]: INFO [plesk-modsecurity] Found 154.192.113.181 - 2026-08-27 08:51:01cloudlinux2 fail2ba
show less
Web App Attack
๐ฎ๐น
Inartis
2026-08-27 00:12:03
(1 day ago)
104.23.160.45 - - [27/Aug/2026:02:12:00 +0200] "GET /.git/HEAD HTTP/2.0" 403 112 "-" "Mozilla/5.0 (M ...
show more
104.23.160.45 - - [27/Aug/2026:02:12:00 +0200] "GET /.git/HEAD HTTP/2.0" 403 112 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:04:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:03:54.376442 2026] [security2:error] [pid 3696:tid 3696] [client 104.23.160.45:13592] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.imagea.net"] [uri "/.git/config"] [unique_id "ao9UuncyZoJAKmqMTBR5KwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 19:17:51
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 15:17:43.747482 2026] [security2:error] [pid 14554:tid 14554] [client 104.23.160.45:9305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.fatcaverecords.com"] [uri "/.git/HEAD"] [unique_id "ao8719j1yFXkdr4exfsO2QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 11:37:21
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:949110) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 07:37:14.283264 2026] [security2:error] [pid 18463:tid 18463] [client 104.23.160.45:10650] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "autodiscover.letahitibookings.com"] [uri "/.git/HEAD"] [unique_id "ao7P6uS3AacV_h66-9slaQAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 07:08:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:08:32.945466 2026] [security2:error] [pid 9845:tid 9845] [client 104.23.160.45:11291] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.spottedeaglearts.com"] [uri "/.git/HEAD"] [unique_id "ao6Q8PzoKb2_0P9eG8utpgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:34:00
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:33:53.764615 2026] [security2:error] [pid 16810:tid 16810] [client 104.23.160.45:13621] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kellerdrywall.ca.kildarafarms.com"] [uri "/.git/HEAD"] [unique_id "ao6I0ctQ3gh3Q4otHjvBVAAAADQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-26 05:31:33
(2 days ago)
[Firewall Canary] Temporary ban due to firewall rule match [URI:*/.git/*]
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:00:39
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.45 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:00:33.737490 2026] [security2:error] [pid 1766:tid 1766] [client 104.23.160.45:10180] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.qualuedata.com"] [uri "/.git/HEAD"] [unique_id "ao5k4TjP2vw5OZuX0Y4ETQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack