๐บ๐ธ
TPI-Abuse
2026-08-24 07:35:22
(50 minutes ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 03:35:17.517535 2026] [security2:error] [pid 26389:tid 26389] [client 104.23.160.48:11577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.oncuegraphics.com"] [uri "/.git/config"] [unique_id "aov0NcpStlX56PLAMYJwKQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 06:19:25
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 02:19:20.311297 2026] [security2:error] [pid 7912:tid 7912] [client 104.23.160.48:10600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "veracurnow.com"] [uri "/.git/HEAD"] [unique_id "aoviaLdcgTLUU_5i_k7HlwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 05:50:52
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 01:50:45.955411 2026] [security2:error] [pid 11238:tid 11238] [client 104.23.160.48:10217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.jerrylogoluso.com"] [uri "/.git/config"] [unique_id "aovbtQd2DRhiN3UxVJ293gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 05:16:21
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 01:16:15.016728 2026] [security2:error] [pid 22734:tid 22734] [client 104.23.160.48:10814] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.africanwisdominimageandproverb.com"] [uri "/.git/config"] [unique_id "aovTn3xGTQmVL8NivTXzgwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
pltcldvlpr
2026-08-23 05:46:01
(1 day ago)
CMS/framework probe: 104.23.160.48 - - [23/Aug/2026:07:46:00 +0200] "GET /.git/config HTTP/2.0" 301 ...
show more
CMS/framework probe: 104.23.160.48 - - [23/Aug/2026:07:46:00 +0200] "GET /.git/config HTTP/2.0" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" asn=13335 org="Cloudflare, Inc." country=US
...
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-22 23:15:19
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-08-22 19:04:09
(1 day ago)
Login credentials theft attempt
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-20 00:55:16
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:55:10.948140 2026] [security2:error] [pid 6554:tid 6554] [client 104.23.160.48:11356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.cdphotography.us"] [uri "/.git/HEAD"] [unique_id "aoZQboWkaJqwifUSNQlhHgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:37:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:37:04.931945 2026] [security2:error] [pid 4539:tid 4539] [client 104.23.160.48:12808] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.greensandbeans.us"] [uri "/.git/HEAD"] [unique_id "aoZMMJR2aeMsEoAuhsnExgAAAHU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 00:11:15
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 20:10:26.394052 2026] [security2:error] [pid 27948:tid 27971] [client 104.23.160.48:14020] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aafmhk.aafm.us"] [uri "/.git/HEAD"] [unique_id "aoZF8rsVzcYke7HPEhmR8wAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-08-19 11:06:40
(4 days ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 06:12:54
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 02:12:44.916028 2026] [security2:error] [pid 29131:tid 29131] [client 104.23.160.48:12120] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.sarahsmith.ws"] [uri "/.git/HEAD"] [unique_id "aoVJXDrvHFBzVWEjAYmgVwAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-17 17:04:41
(6 days ago)
Web App Attack
๐ง๐ช
madeit
2026-08-07 22:00:08
(2 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-23 14:59:01
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 104.23.160.48 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 23 09:58:58.351802 2026] [security2:error] [pid 281386:tid 281386] [client 104.23.160.48:14034] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.interior-cosmetics.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.interior-cosmetics.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "aXOMsuFnVYfJ2BAZaJZ54AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack