Anonymous
2026-09-19 19:05:47
(2 days ago)
(caddyscan) Scanner path probe from 104.23.211.219 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 104.23.211.219 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.23.211.219 - - [19/Sep/2026:19:05:30 +0000] "GET /.env.dist HTTP/1.1"
[REDACTED] 200 2627 104.23.211.219 - - [19/Sep/2026:19:05:30 +0000] "GET /.env.save HTTP/1.1"
[REDACTED] 200 2627 104.23.211.219 - - [19/Sep/2026:19:05:34 +0000] "GET /.env.bak HTTP/1.1"
[REDACTED] 200 2627 104.23.211.219 - - [19/Sep/2026:19:05:34 +0000] "GET /.env.staging HTTP/1.1"
[REDACTED] 200 2627 104.23.211.219 - - [19/Sep/2026:19:05:43 +0000] "GET /StudioServer/.git/config HTTP/1.1"
show less
Port Scan
๐ง๐ช
madeit
2026-09-07 10:10:06
(2 weeks ago)
Web App Attack
๐ซ๐ท
dynamix
2026-08-27 23:52:22
(3 weeks ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
chengkev
2026-08-24 13:41:53
(4 weeks ago)
Esta IP fue detectada por CrowdSec, activando crowdsecurity/http-probing
Web App Attack
Hacking
๐ง๐ช
madeit
2026-08-20 08:54:21
(1 month ago)
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-17 21:59:46
(1 month ago)
Auto-ban: >3000 req/min op 2026-08-17
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-17 11:01:22
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 07:01:14.087536 2026] [security2:error] [pid 31093:tid 31093] [client 104.23.211.219:11302] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.panesarlaw.com"] [uri "/.git/HEAD"] [unique_id "aoLp-lvDAJNYbvnU86IBYQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:56:43
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:56:36.903899 2026] [security2:error] [pid 1102:tid 1102] [client 104.23.211.219:10562] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.sugarsdowntown.com"] [uri "/.git/config"] [unique_id "aoLMxNp8e67bmKGlc2CkWQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:27:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:27:02.069674 2026] [security2:error] [pid 5147:tid 5147] [client 104.23.211.219:14170] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.wizind.com"] [uri "/.git/HEAD"] [unique_id "aoKpti8lKB-OyEZXFBcvpwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:58:59
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:58:54.339608 2026] [security2:error] [pid 29933:tid 29933] [client 104.23.211.219:10022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.jimpharris.com"] [uri "/.git/HEAD"] [unique_id "aoKjHmON5UCgo_uJvrsHnQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 10:27:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:27:06.688519 2026] [security2:error] [pid 3309:tid 3309] [client 104.23.211.219:10810] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ranbarker.com"] [uri "/.git/config"] [unique_id "aoGQev2L4-XXSJXEaVZuJgAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:35:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:35:26.030855 2026] [security2:error] [pid 14235:tid 14235] [client 104.23.211.219:11315] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.unicomtechnologies.com"] [uri "/.git/config"] [unique_id "aoFoPuVpWUUviTh9a2jp1QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:53:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:53:47.626224 2026] [security2:error] [pid 5655:tid 5655] [client 104.23.211.219:11892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.chicagowca.com"] [uri "/.git/config"] [unique_id "aoFee047AxTtKyXfBYD99wAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 02:26:27
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 22:26:19.389534 2026] [security2:error] [pid 23581:tid 23581] [client 104.23.211.219:9559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.restest.rayeliotschwartz.com"] [uri "/.git/config"] [unique_id "aoEfyxwQY1JfYWG2_KdXVwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-14 02:10:23
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.219 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 22:10:15.721592 2026] [security2:error] [pid 3254803:tid 3254803] [client 104.23.211.219:9245] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bienvista.com"] [uri "/.git/config"] [unique_id "an55B4Jo0DxaHUodbuziyAAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack