Anonymous
2026-09-17 09:40:10
(1 day ago)
| Multiple common web attacks from same source ip. (multiple servers)
Web App Attack
Hacking
SQL Injection
๐ง๐ช
madeit
2026-09-15 22:26:04
(3 days ago)
Web App Attack
๐ง๐ช
madeit
2026-08-30 02:04:37
(2 weeks ago)
Web App Attack
๐บ๐ธ
mawan
2026-08-21 23:56:05
(4 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:59:38
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:59:30.809052 2026] [security2:error] [pid 4593:tid 4593] [client 104.23.175.133:13194] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.martaaizenman.com"] [uri "/.git/config"] [unique_id "aoO8gg25NizVDw0gTgzWxAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 23:56:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 19:56:15.246734 2026] [security2:error] [pid 18112:tid 18112] [client 104.23.175.133:13321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "readyremotely.com"] [uri "/.git/config"] [unique_id "aoOfn7RGveP-nSsezUZ39QAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:39:09
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:39:03.242612 2026] [security2:error] [pid 18915:tid 18915] [client 104.23.175.133:13726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.kameleonquilt.com"] [uri "/.git/HEAD"] [unique_id "aoLWt8dIpmJoFX1olLFHxAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:30:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:30:08.377040 2026] [security2:error] [pid 26748:tid 26748] [client 104.23.175.133:11061] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "michaelsabbey.org"] [uri "/.git/config"] [unique_id "aoJkICBoEoYQGH2UgY6oDgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:08:40
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:08:32.213874 2026] [security2:error] [pid 6832:tid 6832] [client 104.23.175.133:11709] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hker.hongkonger.org"] [uri "/.git/config"] [unique_id "aoJRAAQr2GDViNhCGz_VeAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-16 22:00:29
(1 month ago)
Auto-ban: >3000 req/min op 2026-08-16
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-14 21:13:40
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 17:13:32.936369 2026] [security2:error] [pid 20999:tid 20999] [client 104.23.175.133:9584] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kingstoneproperties.com"] [uri "/.git/config"] [unique_id "an-E_EhW16R9iueaXeJafQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
wolfemium
2026-08-11 18:35:22
(1 month ago)
104.23.175.133 - - [11/Aug/2026:21:35:19 +0300] "GET /wp-content/admin.php HTTP/1.1" 502 150 "-" "-" ...
show more
104.23.175.133 - - [11/Aug/2026:21:35:19 +0300] "GET /wp-content/admin.php HTTP/1.1" 502 150 "-" "-"
104.23.175.133 - - [11/Aug/2026:21:35:20 +0300] "GET /dropdown.php HTTP/1.1" 502 150 "-" "-"
104.23.175.133 - - [11/Aug/2026:21:35:20 +0300] "GET /100.php HTTP/1.1" 502 150 "-" "-"
104.23.175.133 - - [11/Aug/2026:21:35:21 +0300] "GET /autoload_classmap/function.php HTTP/1.1" 502 150 "-" "-"
104.23.175.133 - - [11/Aug/2026:21:35:21 +0300] "GET /t.php HTTP/1.1" 502 150 "-" "-"
104.23.175.133 - - [11/Aug/2026:21:35:22 +0300] "GET /wk/index.php HTTP/1.1" 502 150 "-" "-"
...
show less
DDoS Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 06:28:42
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.133 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 02:28:36.558914 2026] [security2:error] [pid 1285484:tid 1285484] [client 104.23.175.133:9311] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ace.jmnr.net"] [uri "/.git/config"] [unique_id "anrBFC6tmjFqgFLUFV-i0gAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-10 05:24:57
(1 month ago)
Web App Attack
๐ง๐พ
lns.bz
2026-05-21 13:30:00
(3 months ago)
Too many 404 requests [BY]
Web App Attack