๐ง๐ฌ
Stoyko Stoykov
2026-08-21 19:59:01
(22 hours ago)
104.23.209.211 - - [21/Aug/2026:22:59:01 +0300] "GET /wp-json/ HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Win ...
show more
104.23.209.211 - - [21/Aug/2026:22:59:01 +0300] "GET /wp-json/ HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/126.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
mawan
2026-08-21 15:01:22
(1 day ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-08-20 12:34:05
(2 days ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 15:34:36
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 11:34:29.251336 2026] [security2:error] [pid 23356:tid 23356] [client 104.23.209.211:10234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.christineaholtz.com"] [uri "/.git/HEAD"] [unique_id "aoMqBZ3napDZ7nYLgmq_UgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 09:17:13
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:17:07.055343 2026] [security2:error] [pid 27077:tid 27077] [client 104.23.209.211:10059] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.norbertesser.com"] [uri "/.git/HEAD"] [unique_id "aoLRk2mg3pTS4wqrcbTWKQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:11:50
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:11:43.055194 2026] [security2:error] [pid 27574:tid 27574] [client 104.23.209.211:9865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "weddingmusicguitar.com"] [uri "/.git/HEAD"] [unique_id "aoKmH4WvqViqBi3mgGpgywAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:56:46
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:56:38.566675 2026] [security2:error] [pid 225568:tid 225568] [client 104.23.209.211:10400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.grandvistalabs.com"] [uri "/.git/config"] [unique_id "aoFfJpQiKE-A6j45QU5oNwAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:10:53
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:10:44.330255 2026] [security2:error] [pid 17095:tid 17095] [client 104.23.209.211:12305] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.gdijoe.com"] [uri "/.git/config"] [unique_id "aoFGVEX2VyorItF3cQvl5wAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:25:44
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:25:36.584255 2026] [security2:error] [pid 3360114:tid 3360114] [client 104.23.209.211:13178] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.rocksolidhomebuilders.com"] [uri "/.git/HEAD"] [unique_id "aoEtsNo7zVTHVlmZ2MnbLAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:26:37
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:26:30.990718 2026] [security2:error] [pid 23226:tid 23226] [client 104.23.209.211:13349] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.beautyradio.com"] [uri "/.git/config"] [unique_id "aoEf1iDcBWcnRPU7D35MKQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 01:03:00
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 21:02:52.649723 2026] [security2:error] [pid 5170:tid 5170] [client 104.23.209.211:9658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.dwightbrown.com"] [uri "/.git/config"] [unique_id "aoEMPHtm5p7o8ayaB7L7VgAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 00:41:52
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 20:41:47.098306 2026] [security2:error] [pid 28808:tid 28808] [client 104.23.209.211:12973] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.reciprodyne.com"] [uri "/.git/HEAD"] [unique_id "aoEHS8Xhx921DPR9ETH30AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-08-15 19:37:45
(6 days ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-14 23:33:55
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 07:11:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.209.211 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 03:11:32.740233 2026] [security2:error] [pid 21266:tid 21266] [client 104.23.209.211:12962] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "newcastle91.org"] [uri "/.git/config"] [unique_id "anwcpBQqokozd8bp-_6VOwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack