๐บ๐ธ
TPI-Abuse
2026-08-28 10:16:00
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:15:56.854023 2026] [security2:error] [pid 743693:tid 744415] [client 104.23.160.5:13087] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.marinkovich.org"] [uri "/.git/HEAD"] [unique_id "apFf3MC5hovT9753mWahigAAAQ0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 07:44:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:44:40.408048 2026] [security2:error] [pid 20571:tid 20571] [client 104.23.160.5:9655] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aprilparks.boaredraven.com"] [uri "/.git/config"] [unique_id "apE8aNFlDu89Guu0SDhg2wAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 00:37:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 20:37:16.034936 2026] [security2:error] [pid 6528:tid 6528] [client 104.23.160.5:9231] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.hardlucktattoo.com"] [uri "/.git/HEAD"] [unique_id "apDYPIQtxbc4lC8pe2U4AQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-08-27 23:50:21
(1 day ago)
104.23.160.5 - - [27/Aug/2026:17:50:20 -0600] "GET /.git/config HTTP/2.0" 301 390 "-" "Mozilla/5.0 ( ...
show more
104.23.160.5 - - [27/Aug/2026:17:50:20 -0600] "GET /.git/config HTTP/2.0" 301 390 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 22:09:13
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:09:09.460257 2026] [security2:error] [pid 26776:tid 26776] [client 104.23.160.5:9912] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.xcengineering.xyz"] [uri "/.git/HEAD"] [unique_id "apC1hdJTNCJrtXp0ndzxmgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 19:31:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 15:31:04.257306 2026] [security2:error] [pid 7272:tid 7272] [client 104.23.160.5:12043] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.dentsville398.org"] [uri "/.git/HEAD"] [unique_id "apCQePbKy6Wo24GDKBAdYQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-27 16:40:12
(2 days ago)
104.23.160.5 - - [27/Aug/2026:16:40:11 +0000] "GET /.git/config HTTP/1.1" 404 51451 "-" "Mozilla/5.0 ...
show more
104.23.160.5 - - [27/Aug/2026:16:40:11 +0000] "GET /.git/config HTTP/1.1" 404 51451 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-27 13:28:31
(2 days ago)
[Thu Aug 27 23:28:30.123495 2026] [security2:error] [pid 485437] [client 104.23.160.5:12285] [client ...
show more
[Thu Aug 27 23:28:30.123495 2026] [security2:error] [pid 485437] [client 104.23.160.5:12285] [client 104.23.160.5] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "angleseaarthouse.com.au"] [uri "/.git/HEAD"] [unique_id "apA7fv2CiJ660Hn3X3AL9gAAAAY"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 09:02:56
(2 days ago)
(mod_security) mod_security (id:949110) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:949110) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 05:02:48.738418 2026] [security2:error] [pid 26354:tid 26354] [client 104.23.160.5:10451] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "autodiscover.tikehaubookings.com"] [uri "/.git/HEAD"] [unique_id "ao_9OGpXdN_M7Ko6EmOTmwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:01:40
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:01:35.502431 2026] [security2:error] [pid 26103:tid 26103] [client 104.23.160.5:13076] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.briannalls.com"] [uri "/.git/config"] [unique_id "ao_u358qNqdoAxidLqxNxQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 05:03:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:03:11.950292 2026] [security2:error] [pid 6143:tid 6143] [client 104.23.160.5:11735] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mjgraphics.net"] [uri "/.git/HEAD"] [unique_id "ao_FDwY-ivYCwEXixqM8HQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:41:40
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:41:32.529901 2026] [security2:error] [pid 6659:tid 6659] [client 104.23.160.5:12356] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.watlab.com"] [uri "/.git/HEAD"] [unique_id "ao9djKXEeotEYm4-2JG3NwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 20:56:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.5 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 16:56:10.081542 2026] [security2:error] [pid 30534:tid 30534] [client 104.23.160.5:11806] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.huntingforebears.com"] [uri "/.git/HEAD"] [unique_id "ao9S6uVComlYLpEQ5pkc3QAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Bedios GmbH
2026-08-26 17:50:23
(3 days ago)
Login credentials theft attempt
Hacking
Anonymous
2026-08-26 11:39:37
(3 days ago)
/.git trap
Port Scan
Hacking
Web App Attack