๐บ๐ธ
TPI-Abuse
2026-09-04 07:54:07
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 04 03:54:02.654729 2026] [security2:error] [pid 4691:tid 4799] [client 104.23.213.127:11066] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.houstondermatology.net.aafm.us"] [uri "/.env.test"] [unique_id "app5GoZiW6PqWYUwGvURrwAAARI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 12:36:49
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 08:36:43.774912 2026] [security2:error] [pid 16282:tid 16282] [client 104.23.213.127:12703] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.f40ph.org"] [uri "/.git/HEAD"] [unique_id "aoMAW33DPuWCs5ud10vgtAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:56:06
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:55:59.178914 2026] [security2:error] [pid 27294:tid 27294] [client 104.23.213.127:10449] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ppcspetsitting.com"] [uri "/.git/HEAD"] [unique_id "aoJqL5zTGk76Mwh2MuzcIQAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:03:53
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:03:45.821984 2026] [security2:error] [pid 9275:tid 9275] [client 104.23.213.127:11892] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.idgcasadelgeologo.com"] [uri "/.git/HEAD"] [unique_id "aoFg0bznnUDUrKQnDwS_MAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 01:28:00
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 21:27:54.377534 2026] [security2:error] [pid 24389:tid 24389] [client 104.23.213.127:11600] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shop.bwill.dev"] [uri "/.git/HEAD"] [unique_id "aoESGtS8hUUwWrg6fsWDigAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 22:27:20
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 18:27:12.615463 2026] [security2:error] [pid 650456:tid 650456] [client 104.23.213.127:11676] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.petiteplaisanceconservationfund.org"] [uri "/.git/config"] [unique_id "anuhwMZOPHUrUy7NXQndjwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-11 12:59:53
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.127 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 11 08:59:44.316398 2026] [security2:error] [pid 2349721:tid 2349721] [client 104.23.213.127:13514] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tpdtuberental.com.bonefrog.com"] [uri "/.git/config"] [unique_id "anscwN0q-9BM32unEhl_8QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-08 03:10:31
(4 weeks ago)
Web App Attack
๐บ๐ธ
mnsf
2026-04-08 01:05:25
(4 months ago)
Scanning/Probing (18)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-05 20:05:32
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-03 23:06:54
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-02 11:05:42
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-31 22:06:00
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-30 10:05:33
(5 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
Gabriel Camargo
2026-03-29 23:15:51
(5 months ago)
104.23.213.127 - - [29/Mar/2026:18:15:50 -0500] "GET /.env.old HTTP/1.1" 301 178 "-" "-"
104.23.213. ...
show more
104.23.213.127 - - [29/Mar/2026:18:15:50 -0500] "GET /.env.old HTTP/1.1" 301 178 "-" "-"
104.23.213.127 - - [29/Mar/2026:18:15:50 -0500] "GET /.env.production.local HTTP/1.1" 301 178 "-" "-"
104.23.213.127 - - [29/Mar/2026:18:15:50 -0500] "GET /api/.env HTTP/1.1" 301 178 "-" "-"
...
show less
Brute-Force
SSH