π§πͺ
madeit
2026-08-29 07:11:50
(1 day ago)
Web App Attack
π©πͺ
FeG Deutschland
2026-08-17 23:08:13
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 09:37:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:37:08.523912 2026] [security2:error] [pid 25704:tid 25704] [client 104.23.175.141:10182] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cathayexpress.com"] [uri "/.git/HEAD"] [unique_id "aoLWRCQiXpkqXetSsXV5rQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 08:56:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:56:20.766647 2026] [security2:error] [pid 31436:tid 31436] [client 104.23.175.141:12750] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pelicancovecondo.com"] [uri "/.git/HEAD"] [unique_id "aoLMtBVtAGCUFmuMp4cnZwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 07:00:23
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:00:17.942520 2026] [security2:error] [pid 10865:tid 10918] [client 104.23.175.141:11538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.captechinc.com"] [uri "/.git/config"] [unique_id "aoKxgbtB7mvG3AFBKCUH9AAAAFU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 03:25:24
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:25:19.216561 2026] [security2:error] [pid 11494:tid 11494] [client 104.23.175.141:13693] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.burke698.org"] [uri "/.git/HEAD"] [unique_id "aoJ_H-KmBP0MBG0o_0-xGQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-16 07:47:11
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:47:05.043849 2026] [security2:error] [pid 23926:tid 23926] [client 104.23.175.141:11220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.flyingwithstan.com"] [uri "/.git/HEAD"] [unique_id "aoFq-betld3uhUg3mna5jgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
piticu iuli
2026-08-14 20:36:39
(2 weeks ago)
(mod_security) mod_security triggered on hostname [redacted] 104.23.175.141 (SG/Singapore/-)
SQL Injection
πΊπΈ
TPI-Abuse
2026-08-14 19:32:36
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 14 15:32:31.686581 2026] [security2:error] [pid 12422:tid 12422] [client 104.23.175.141:9637] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.schlegelcreative.com"] [uri "/.git/HEAD"] [unique_id "an9tTzk2ufzRRzLEMQB0RQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-11 23:24:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.141 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 19:24:34.376305 2026] [security2:error] [pid 3008474:tid 3008474] [client 104.23.175.141:12003] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.veneerdent.com"] [uri "/.git/HEAD"] [unique_id "anuvMoStk0nZKAmZgnbrQQAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-08 00:48:29
(3 weeks ago)
Web App Attack
π¨πΏ
Prcek
2026-07-23 05:33:46
(1 month ago)
PortScan:HOST=104.23.175.141,DPORTS=443
Port Scan
π©πͺ
abdubhai
2026-06-26 11:30:34
(2 months ago)
104.23.175.141 - - [26/Jun/2026:
...
Brute-Force
Anonymous
2026-06-22 05:31:25
(2 months ago)
104.23.175.141 - - > tecnicman.com [22/Jun/2026:07:31:21 +0200] "POST /wp-login.php HTTP/2.0" 301 16 ...
show more
104.23.175.141 - - > tecnicman.com [22/Jun/2026:07:31:21 +0200] "POST /wp-login.php HTTP/2.0" 301 162 "https://tecnicman.com/wp-login.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.1 Safari/605.1.15" "161.118.220.167"
104.23.175.141 - - > tecnicman.com [22/Jun/2026:07:31:22 +0200] "POST /wp-login.php HTTP/2.0" 301 162 "https://tecnicman.com/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:90.0) Gecko/20100101 Firefox/90.0.1" "161.118.220.167"
104.23.175.141 - - > tecnicman.com [22/Jun/2026:07:31:23 +0200] "POST /wp-login.php HTTP/2.0" 301 162 "https://tecnicman.com/wp-login.php" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/90.0.4430.212 Safari/537.36" "161.118.220.167"
104.23.175.141 - - > tecnicman.com [22/Jun/2026:07:31:24 +0200] "POST /wp-login.php HTTP/2.0" 301 162 "https://tecnicman.com/wp-login.php" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Geck
...
show less
Hacking
Bad Web Bot
Web App Attack
πΊπΈ
freeutka
2026-05-11 06:48:22
(3 months ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack