๐ท๐บ
DZBOT
2026-08-25 06:04:39
(14 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-20 07:46:22
(5 days ago)
104.23.217.57 - - [20/Aug/2026:10:46:21 +0300] "GET /xx.php HTTP/1.1" 301 162 "-" "-"
...
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 05:38:45
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 01:38:40.747969 2026] [security2:error] [pid 22911:tid 22911] [client 104.23.217.57:13249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.brupharm.net"] [uri "/.git/config"] [unique_id "aoVBYHLQDTcGjHsGjy3ulAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 02:44:15
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:44:06.909279 2026] [security2:error] [pid 31198:tid 31198] [client 104.23.217.57:11390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.eboredom.net"] [uri "/.git/HEAD"] [unique_id "aoUYdv_dmHAHHPjuTeG_mgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-08-17 21:07:25
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 16:13:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 12:13:40.779769 2026] [security2:error] [pid 13166:tid 13166] [client 104.23.217.57:13144] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.nigunensemble.net"] [uri "/.git/HEAD"] [unique_id "aoMzNOM6YlxBVeCUZuatMgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:03:10
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:03:06.061724 2026] [security2:error] [pid 21608:tid 21608] [client 104.23.217.57:12310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.thecalls.net"] [uri "/.git/config"] [unique_id "aoJ56ljbdaBAlV1dftGEJwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 23:14:32
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 19:14:29.360588 2026] [security2:error] [pid 1290143:tid 1290143] [client 104.23.217.57:12313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bajocamara.com"] [uri "/.git/HEAD"] [unique_id "aoJEVWu7ADP0VX9fBpP7MAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 22:58:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 18:58:24.939035 2026] [security2:error] [pid 30321:tid 30321] [client 104.23.217.57:12920] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.3rdid7thinf.org"] [uri "/.git/HEAD"] [unique_id "aoJAkPcF3-IdanPy_nd2hQAAAC8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ณ
primal
2026-08-16 10:30:00
(1 week ago)
Automated attack traffic against a WordPress site: login brute-force blocked by WordPress security p ...
show more
Automated attack traffic against a WordPress site: login brute-force blocked by WordPress security plugin (1x). Blocked by CDN/WAF/application security layers. Total 1 hits in last 30 days.
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 10:13:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 06:13:18.259916 2026] [security2:error] [pid 25033:tid 25033] [client 104.23.217.57:14088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cuul.co"] [uri "/.git/config"] [unique_id "aoGNPtKQ0wkAPuL6a0BYUgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:36:25
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:36:18.711736 2026] [security2:error] [pid 9735:tid 9735] [client 104.23.217.57:13234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.smokehouseeatery.ca"] [uri "/.git/config"] [unique_id "aoFocgcFaMWBMoRs8VSOVQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-13 17:49:02
(1 week ago)
[13/Aug/2026:20:49:01 +0300] -- 104.23.217.57 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git ...
show more
[13/Aug/2026:20:49:01 +0300] -- 104.23.217.57 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-13 17:43:42
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.217.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 13 13:43:37.327748 2026] [security2:error] [pid 3496928:tid 3496928] [client 104.23.217.57:9702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.lsd36.com"] [uri "/.git/HEAD"] [unique_id "an4CSYzzmkkwaLmoJ3mROgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-12 16:36:25
(1 week ago)
104.23.217.57 - - [12/Aug/2026:19:36:24 +0300] "GET /wp-content.php.php HTTP/1.1" 301 162 "-" "-"
.. ...
show more
104.23.217.57 - - [12/Aug/2026:19:36:24 +0300] "GET /wp-content.php.php HTTP/1.1" 301 162 "-" "-"
...
show less
Hacking
Web App Attack