🇹🇷
crnpekgoz
2026-10-04 21:44:34
(7 hours ago)
Malicious HTTP GET request for '/.git/config' (HTTP 301) from 104.23.175.78. Threat: Web Güvenlik Aç ...
show more
Malicious HTTP GET request for '/.git/config' (HTTP 301) from 104.23.175.78. Threat: Web Güvenlik Açığı Taraması (.env/bot). Blocked by WardenGuard Web Shield.
show less
Web App Attack
🇹🇷
crnpekgoz
2026-10-03 04:51:01
(2 days ago)
Malicious HTTP GET request for '/.git/config' (HTTP 301) from 104.23.175.78. Threat: Web Güvenlik Aç ...
show more
Malicious HTTP GET request for '/.git/config' (HTTP 301) from 104.23.175.78. Threat: Web Güvenlik Açığı Taraması (.env/bot). Blocked by WardenGuard Web Shield.
show less
Web App Attack
🇩🇪
FeG Deutschland
2026-09-25 21:48:47
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-21 21:04:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Sep 21 17:04:17.630556 2026] [security2:error] [pid 22499:tid 22499] [client 104.23.175.78:13123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "microscopicpablo.robtown.com"] [uri "/.git/HEAD"] [unique_id "arGb0R-oXvwyA8czNUuGxgAAAA0"], referer: https://www.google.com/search?q=microscopicpablo.robtown.com
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
FeG Deutschland
2026-09-20 05:43:05
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
🇧🇪
madeit
2026-09-08 03:00:58
(3 weeks ago)
Web App Attack
🇺🇸
TPI-Abuse
2026-08-17 07:31:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:31:24.788368 2026] [security2:error] [pid 4598:tid 4598] [client 104.23.175.78:11424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.rangerroma.com"] [uri "/.git/config"] [unique_id "aoK4zAX2O26W5mLr7XSa1gAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-17 03:47:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:46:55.733623 2026] [security2:error] [pid 10982:tid 10986] [client 104.23.175.78:11209] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.c22p.org"] [uri "/.git/HEAD"] [unique_id "aoKEL5LIT0EU9t4xY_j9TAAAAUE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-17 03:27:08
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:27:01.030782 2026] [security2:error] [pid 10357:tid 10357] [client 104.23.175.78:10895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.plava.org"] [uri "/.git/config"] [unique_id "aoJ_hSvOt0r_b0Cq7VBPXQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-17 02:14:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 22:14:19.039196 2026] [security2:error] [pid 25469:tid 25469] [client 104.23.175.78:10072] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "salvoni.org"] [uri "/.git/config"] [unique_id "aoJuexMFzD6erSYfncv6CQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-17 00:31:54
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:31:50.129601 2026] [security2:error] [pid 30570:tid 30570] [client 104.23.175.78:11951] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.urrguide.com.coolingsprings.org"] [uri "/.git/config"] [unique_id "aoJWdhzw9Dn9wDAPCwjdfwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-16 10:25:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.175.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:25:24.940663 2026] [security2:error] [pid 12444:tid 12444] [client 104.23.175.78:12978] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gyenyameholistics.com"] [uri "/.git/config"] [unique_id "aoGQFDcCwYjGzk-vE2oZ7AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
interbiznw.com
2026-08-09 03:27:46
(1 month ago)
fail2ban-ban
Hacking
Brute-Force
Exploited Host
Web App Attack
Anonymous
2026-08-03 19:39:49
(2 months ago)
[Mon Aug 03 21:39:46.187784 2026] [authz_core:error] [pid 1296] [client 104.23.175.78:13993] AH01630 ...
show more
[Mon Aug 03 21:39:46.187784 2026] [authz_core:error] [pid 1296] [client 104.23.175.78:13993] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Aug 03 21:39:47.708888 2026] [authz_core:error] [pid 2417] [client 104.23.175.78:11089] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon Aug 03 21:39:48.713455 2026] [authz_core:error] [pid 2427] [client 104.23.175.78:11095] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
🇧🇷
chronos
2026-08-03 15:12:45
(2 months ago)
2026-08-03 11:04:09 UTC-3||Unauthorized connection attempt detected for port scanning
Port Scan