๐ฉ๐ช
ghostwarriors
2026-08-21 03:20:08
(1 week ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-21 02:51:50
(1 week ago)
104.23.213.90 - - [21/Aug/2026:04:51:43 +0200] "GET /classwithtostring.php HTTP/2.0" 404 55 "-" "Moz ...
show more
104.23.213.90 - - [21/Aug/2026:04:51:43 +0200] "GET /classwithtostring.php HTTP/2.0" 404 55 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
104.23.213.90 - - [21/Aug/2026:04:51:40 +0200] "GET /router.php HTTP/2.0" 404 55 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
104.23.213.90 - - [21/Aug/2026:04:51:40 +0200] "GET /ms-files.php HTTP/2.0" 404 55 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
104.23.213.90 - - [21/Aug/2026:04:51:40 +0200] "GET /readme.php HTTP/2.0" 404 55 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36"
104.23.213.90 - - [21/Aug/2026:04:51:42 +0200] "GET /Cache.php HTTP/2.0" 404 78 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/5
show less
Web App Attack
Brute-Force
๐ช๐ธ
librebit
2026-08-19 03:48:00
(1 week ago)
Brute force
Brute-Force
๐ช๐ธ
librebit
2026-08-18 01:41:20
(1 week ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-17 09:49:12
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 05:49:07.564460 2026] [security2:error] [pid 20201:tid 20262] [client 104.23.213.90:12265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.accreditedfinancialanalyst.org"] [uri "/.git/config"] [unique_id "aoLZE_uf-buDfSFEwc8PPwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 07:27:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 03:27:52.151059 2026] [security2:error] [pid 23377:tid 23377] [client 104.23.213.90:10428] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.anywheregarden.com"] [uri "/.git/config"] [unique_id "aoK3-ChVtTKlFMpwvd8-LgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
pm33
2026-08-17 00:02:52
(1 week ago)
Probing for resource vulnerabilities HTTP(S)
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-16 11:50:11
(1 week ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-16 11:37:57
(1 week ago)
104.23.213.90 - - [16/Aug/2026:13:37:56 +0200] "GET /100.kb.php HTTP/2.0" 404 341 "-" "-"
104.23.213 ...
show more
104.23.213.90 - - [16/Aug/2026:13:37:56 +0200] "GET /100.kb.php HTTP/2.0" 404 341 "-" "-"
104.23.213.90 - - [16/Aug/2026:13:37:56 +0200] "GET /mamzi.php HTTP/2.0" 404 55 "-" "-"
104.23.213.90 - - [16/Aug/2026:13:37:57 +0200] "GET //ms.php HTTP/2.0" 404 78 "-" "-"
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-16 10:10:40
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:10:36.229405 2026] [security2:error] [pid 13302:tid 13302] [client 104.23.213.90:11251] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "fireteam.faith"] [uri "/.git/HEAD"] [unique_id "aoGMnJ2j-z9ZJ1TRPm6RSwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:20:36
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:20:30.206869 2026] [security2:error] [pid 14694:tid 14694] [client 104.23.213.90:11966] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.oposicionesyconcursos.es.creartest.com"] [uri "/.git/config"] [unique_id "aoFkvjaAq5tu-z8w4E5TiQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 04:23:38
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 00:23:34.318700 2026] [security2:error] [pid 1441:tid 1441] [client 104.23.213.90:11619] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.foxmm.com"] [uri "/.git/config"] [unique_id "aoE7RiNbyWjFItJ5c_HGtAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 03:59:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.213.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 15 23:59:52.009549 2026] [security2:error] [pid 20505:tid 20505] [client 104.23.213.90:11801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.finewebdining.com"] [uri "/.git/HEAD"] [unique_id "aoE1uCZqLIMiREn3yU_MDQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-04-08 16:05:38
(4 months ago)
Scanning/Probing (11)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-04-06 21:05:16
(4 months ago)
Scanning/Probing (23)
Brute-Force
Web App Attack