๐ซ๐ท
dynamix
2026-10-08 01:23:14
(31 minutes ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
dynamix
2026-10-05 01:23:17
(3 days ago)
Multiple WAF Violations
Web App Attack
๐ช๐ธ
robotstxt
2026-10-04 22:19:03
(3 days ago)
104.23.175.52 - - [04/Oct/2026:22:18:11 +0000] "GET /.npmrc HTTP/1.1" 403 12 "-" "Mozilla/5.0 AppleW ...
show more
104.23.175.52 - - [04/Oct/2026:22:18:11 +0000] "GET /.npmrc HTTP/1.1" 403 12 "-" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot)" "34.158.59.249" edge="104.23.175.52"
104.23.175.52 - - [04/Oct/2026:22:18:13 +0000] "GET /.ssh/config HTTP/1.1" 403 31745 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" "34.158.59.249" edge="104.23.175.52"
104.23.175.52 - - [04/Oct/2026:22:18:14 +0000] "GET /.bashrc HTTP/1.1" 403 12 "-" "Mozilla/5.0 (compatible; MistralAI-User/1.0; +https://mistral.ai/)" "34.158.59.249" edge="104.23.175.52"
104.23.175.52 - - [04/Oct/2026:22:18:16 +0000] "GET /@fs/../.env?raw?? HTTP/1.1" 403 31745 "-" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)" "34.158.59.249" edge="104.23.175.52"
104.23.175.52 - - [04/Oct/2026:22:18:17 +0000] "GET /@fs/home/ec2-user/.aws/credentials?raw?? HTTP/1.1" 403 31731 "-" "Mozilla/5.0 (compatible; DeepSeekBot/1.0; +https://www.de
...
show less
Web App Attack
๐ซ๐ฎ
abdubhai
2026-10-03 09:50:59
(4 days ago)
104.23.175.52 - - [03/Oct/2026:1
...
Brute-Force
๐ฎ๐ฉ
penjaga BRIN
2026-09-30 06:56:17
(1 week ago)
Suspicious malicious activity
Hacking
๐ฌ๐ง
seniorlinuxadmin
2026-09-30 04:45:17
(1 week ago)
104.23.175.52 - - [30/Sep/2026:05:45:15 +0100] "GET /.env.production.local HTTP/2.0" 403 158 "-" "Mo ...
show more
104.23.175.52 - - [30/Sep/2026:05:45:15 +0100] "GET /.env.production.local HTTP/2.0" 403 158 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:137.0) Gecko/20100101 Firefox/137.0"
show less
Port Scan
Web App Attack
๐ง๐ช
madeit
2026-09-25 19:30:31
(1 week ago)
Web App Attack
๐ง๐ช
madeit
2026-09-18 07:37:06
(2 weeks ago)
Web App Attack
๐ฌ๐ง
myintarweb
2026-09-10 03:59:57
(3 weeks ago)
104.23.175.52 - - [10/Sep/2026:04:59:57 +0100] 443 "GET /.env HTTP/2.0" 403 1156 "https://www.google ...
show more
104.23.175.52 - - [10/Sep/2026:04:59:57 +0100] 443 "GET /.env HTTP/2.0" 403 1156 "https://www.google.com/search?q=m.myintarweb.co.uk" "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ChatGPT-User/1.0; +https://openai.com/bot)"
...
show less
Hacking
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-09-09 04:38:46
(4 weeks ago)
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-08 22:03:35
(4 weeks ago)
Auto-ban: >3000 req/min op 2026-09-08
Web App Attack
SSH
Hacking
๐บ๐ธ
mawan
2026-08-22 09:58:30
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:46:47
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.52 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:46:38.989161 2026] [security2:error] [pid 22209:tid 22209] [client 104.23.175.52:9616] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.tjsworld.net"] [uri "/.git/config"] [unique_id "aoO5fvukpG6Ex99g77KjOgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:05:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.52 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:04:58.382085 2026] [security2:error] [pid 7929:tid 7929] [client 104.23.175.52:10348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.drivernine.com"] [uri "/.git/HEAD"] [unique_id "aoLOujAzyZRcE5RspV8CiAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:00:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.52 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:00:51.485173 2026] [security2:error] [pid 15639:tid 15639] [client 104.23.175.52:14206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.adm-sal.com"] [uri "/.git/HEAD"] [unique_id "aoKxo9irSssv5GabfPlvjgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack