๐ฎ๐ฉ
securejdprop
2026-08-24 23:34:45
(15 hours ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐ซ๐ท
chengkev
2026-08-19 07:07:56
(6 days ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/http-probing
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-18 00:54:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 20:54:16.800836 2026] [security2:error] [pid 17455:tid 17455] [client 104.23.209.110:9316] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.stananddana.com"] [uri "/.git/config"] [unique_id "aoOtOI1FYnE0wpPPjWPInwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:55:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:55:06.063288 2026] [security2:error] [pid 30691:tid 30817] [client 104.23.209.110:12970] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trulyoriginalpurpleoctopus.art"] [uri "/.git/HEAD"] [unique_id "aoMSus1N2WMauzv1UXwETQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 12:13:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 08:13:52.400268 2026] [security2:error] [pid 28053:tid 28053] [client 104.23.209.110:12690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.drgas.com.scottwithers.xyz"] [uri "/.git/config"] [unique_id "aoL7ABY6PnuX41mhLde5NgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:38:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:38:20.363881 2026] [security2:error] [pid 19898:tid 19898] [client 104.23.209.110:11074] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.palumbodesigns.com"] [uri "/.git/config"] [unique_id "aoKsXGWDu4iPFtDkJe4mUwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:57:34
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:57:25.960052 2026] [security2:error] [pid 24867:tid 24867] [client 104.23.209.110:12963] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zavijava.net"] [uri "/.git/HEAD"] [unique_id "aoKixRsdt64q3nSf5x0NWgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 04:25:01
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:24:55.567100 2026] [security2:error] [pid 21014:tid 21014] [client 104.23.209.110:9979] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.airei.com"] [uri "/.git/HEAD"] [unique_id "aoE7l-Sg5nHkXIJ2OjuuNQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 18:56:47
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 14:56:42.742770 2026] [security2:error] [pid 2199602:tid 2199602] [client 104.23.209.110:9546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "naturalpozzolanassociation.org"] [uri "/.git/config"] [unique_id "an4TavZR226AD2tgqE_TtQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-07 06:22:07
(2 weeks ago)
Web App Attack
๐ฉ๐ช
acadeova
2026-07-29 18:30:26
(3 weeks ago)
๐จ Recon detected (nft drop)
SRC=104.23.209.110
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.209.110
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-07-29 07:00:00
(3 weeks ago)
Apache probe; attempts=24; exact paths: /.env | /.env.backup | /.env.bak | /.env.dev | /.env.example ...
show more
Apache probe; attempts=24; exact paths: /.env | /.env.backup | /.env.bak | /.env.dev | /.env.example | /.env.local | /.env.old | /.env.php.bak | /.env.production | /.env.swp | /.git-credentials | /.git/HEAD | /.git/config | /.hermes/.env | /.openclaw/.env | /admin/.env | /api/.env | /backend/.env | /config/.env | /config/.env.php | /core/.env | /laravel/.env | /public/.env | /web/.env
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 20:10:43
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 16:10:37.787729 2026] [security2:error] [pid 16864:tid 16864] [client 104.23.209.110:22677] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "davefortier.davidfortier.com"] [uri "/.git/config"] [unique_id "aichvYZM29jjcumVixTbWAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 12:11:45
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 08:11:40.650467 2026] [security2:error] [pid 30691:tid 30691] [client 104.23.209.110:14004] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lauralane.club.cienmalos.com"] [uri "/.env.backup"] [unique_id "agcNfAfUStBk_eSSRvTfkQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-04-22 21:59:45
(4 months ago)
Auto-ban: >3000 req/min op 2026-04-22
Web App Attack
SSH
Hacking