๐บ๐ธ
TPI-Abuse
2026-08-28 09:26:56
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:26:50.652648 2026] [security2:error] [pid 31077:tid 31077] [client 104.23.160.97:13857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "321q.com"] [uri "/.git/config"] [unique_id "apFUWnIgqG-M_nipM5w8VAAAADM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:35:15
(4 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-27 20:57:26
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 16:57:17.898079 2026] [security2:error] [pid 23770:tid 23770] [client 104.23.160.97:13847] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sprek.net.sprektech.com"] [uri "/.git/config"] [unique_id "apCkrTyeHTrZjZtLsjMw0gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-27 18:06:18
(5 days ago)
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 14:01:33
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 12:43:38
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 08:43:34.788396 2026] [security2:error] [pid 12387:tid 12387] [client 104.23.160.97:11222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.healthpointphysicians.co"] [uri "/.git/config"] [unique_id "apAw9nw0pIoZeuxpRf6Z0wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 04:54:39
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 00:54:35.635981 2026] [security2:error] [pid 18230:tid 18234] [client 104.23.160.97:13251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.adprosfla.adprospb.com"] [uri "/.git/config"] [unique_id "ao_DCyG7lcFa2ER8Rn6dVgAAAME"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-27 04:39:54
(5 days ago)
Accessed trap at '/.git/config'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 18:40:18
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 14:40:14.500007 2026] [security2:error] [pid 3094:tid 3094] [client 104.23.160.97:12572] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.artattackgraphics.com"] [uri "/.git/config"] [unique_id "ao8zDhnggLf-bC5NPrFexgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 16:35:22
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 12:35:14.899569 2026] [security2:error] [pid 17184:tid 17184] [client 104.23.160.97:12597] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.pioneercanadian.com"] [uri "/.git/HEAD"] [unique_id "ao8VwgJMEdc2qD5u9Ogq8AAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-26 14:32:03
(6 days ago)
Accessed trap at '/.git/HEAD'
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-26 11:01:13
(6 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:30:11
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:30:03.119531 2026] [security2:error] [pid 15631:tid 15631] [client 104.23.160.97:13745] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.andy-blakk.org"] [uri "/.git/HEAD"] [unique_id "ao7AKy42yvuDHjqKLb-y4AAAAEE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:55:01
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.160.97 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:54:53.792387 2026] [security2:error] [pid 30077:tid 30077] [client 104.23.160.97:11699] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.staugustineflyfishing.net"] [uri "/.git/config"] [unique_id "ao6p3U2RcV-tx8WTOJJk_QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-26 07:52:46
(6 days ago)
[Wed Aug 26 17:52:45.100192 2026] [security2:error] [pid 323879] [client 104.23.160.97:10323] [clien ...
show more
[Wed Aug 26 17:52:45.100192 2026] [security2:error] [pid 323879] [client 104.23.160.97:10323] [client 104.23.160.97] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "bermanfamily.com.au"] [uri "/.git/config"] [unique_id "ao6bTWthihaCmM0o3PEOqQAAAAU"]
...
show less
Web App Attack