Anonymous
2026-08-28 08:34:30
(12 hours ago)
Aggressive web scan
Web App Attack
Anonymous
2026-08-26 12:59:37
(2 days ago)
Aggressive web scan
Web App Attack
Anonymous
2026-08-23 06:14:21
(5 days ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 03:21:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:21:33.368937 2026] [security2:error] [pid 26592:tid 26592] [client 104.23.211.79:12251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.rangejudging.com"] [uri "/.git/config"] [unique_id "aoPPvTNWP1yVJdrKnAmA7gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:57:55
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:57:50.103002 2026] [security2:error] [pid 18872:tid 18872] [client 104.23.211.79:9490] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lavahotspringsrealestate.com"] [uri "/.git/HEAD"] [unique_id "aoO8Hu8UZP_SCqQ23AIbsQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:30:39
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:30:32.683553 2026] [security2:error] [pid 13081:tid 13081] [client 104.23.211.79:11446] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nunsunveiled.com"] [uri "/.git/config"] [unique_id "aoLGqOrx7Q_j7SWzDfEJKQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:35:08
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:35:01.131942 2026] [security2:error] [pid 16058:tid 16058] [client 104.23.211.79:11050] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.grmvrr.com"] [uri "/.git/HEAD"] [unique_id "aoK5pfvOrM8K4b0IUGrNuAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:33:11
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:33:00.516583 2026] [security2:error] [pid 1154:tid 1181] [client 104.23.211.79:11641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ellicottville.net"] [uri "/.git/config"] [unique_id "aoKrHHcVB__wBgW-bRixUgAAARc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:59:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:58:54.380639 2026] [security2:error] [pid 17075:tid 17075] [client 104.23.211.79:10759] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.justiart.com"] [uri "/.git/HEAD"] [unique_id "aoKjHvKOozzbdgzlSqn03wAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-08-16 03:10:48
(1 week ago)
๐จ Recon detected (nft drop)
SRC=104.23.211.79
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=104.23.211.79
Observed=TCP dpt=80 in=enp0s6 ttl=57
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-08-16 00:48:38
(1 week ago)
invalid request
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 12:32:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 08:32:47.226907 2026] [security2:error] [pid 1058423:tid 1058423] [client 104.23.211.79:11972] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.jeffhinkley.com"] [uri "/.git/config"] [unique_id "anxn72zI5vfeQkjZaRGyvgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-12 08:39:10
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 12 04:39:04.238137 2026] [security2:error] [pid 7337:tid 7337] [client 104.23.211.79:9800] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.internet-brochures.com"] [uri "/.git/HEAD"] [unique_id "anwxKK7McF39sCZXaZVRuwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 02:22:31
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.211.79 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 22:22:28.153342 2026] [security2:error] [pid 1324020:tid 1324042] [client 104.23.211.79:14071] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "charteredwealthmanager.aafm.us"] [uri "/.git/config"] [unique_id "anqHZPLaSCXRvxi0KZ3_jAAAAVM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-07 00:32:45
(3 weeks ago)
Web App Attack