Anonymous
2026-10-11 16:35:09
(4 hours ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
πΊπΈ
TPI-Abuse
2026-10-09 11:36:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 07:35:57.888923 2026] [security2:error] [pid 6533:tid 6533] [client 104.23.221.110:10468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "greenquince.com"] [uri "/.git/config"] [unique_id "asjRnb07_n3w1ZAgbye-ZwAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
altenglaner
2026-10-02 11:53:46
(1 week ago)
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ba ...
show more
Web scanner probing for sensitive files (.env, .git, backups) or path traversal. Reported by fail2ban.
show less
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 09:02:58
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 05:02:53.910958 2026] [security2:error] [pid 17277:tid 17277] [client 104.23.221.110:10714] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sealcoatnj.com"] [uri "/.git/config"] [unique_id "arzQPRNTpfwmAjivGkOasgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 05:10:19
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 01:10:11.689980 2026] [security2:error] [pid 23089:tid 23089] [client 104.23.221.110:12220] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "givemethemic.com"] [uri "/.git/config"] [unique_id "aryZszeUkvqoK30jW8xfMAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 04:52:50
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 00:52:45.742245 2026] [security2:error] [pid 13971:tid 13971] [client 104.23.221.110:9564] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gildemello.com"] [uri "/.git/config"] [unique_id "aryVnXjE9Q0LXbJVssRLHAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-25 20:17:04
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 16:17:01.138186 2026] [security2:error] [pid 15759:tid 15759] [client 104.23.221.110:14203] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "martaaizenman.com"] [uri "/.git/config"] [unique_id "arbWvR33WKdN-PgxvQEcTgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-25 16:40:48
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 12:40:42.038974 2026] [security2:error] [pid 28807:tid 28899] [client 104.23.221.110:10221] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kwainet.com"] [uri "/.git/config"] [unique_id "arakCsr_x9GRasinnJjnCAAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
tecnicorioja
2026-09-18 22:00:13
(3 weeks ago)
wp-login attack [18/Sep/2026:22:01:28
Brute-Force
Web App Attack
π§πͺ
madeit
2026-09-13 13:51:40
(4 weeks ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-08 16:15:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 08 12:15:23.726656 2026] [security2:error] [pid 23668:tid 23668] [client 104.23.221.110:12559] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "icafe.bz"] [uri "/.git/config"] [unique_id "aqA0myk07Bfu2_THVzVxewAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 06:30:12
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 02:30:06.482736 2026] [security2:error] [pid 26569:tid 26569] [client 104.23.221.110:9675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tomweston.net"] [uri "/.git/HEAD"] [unique_id "aoVNbnMemwS9VlMTXoPoEwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 05:39:41
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 01:39:32.936248 2026] [security2:error] [pid 32649:tid 32649] [client 104.23.221.110:9619] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.vccemail.net"] [uri "/.git/HEAD"] [unique_id "aoVBlNBlcmYa7oqq1Ztb4wAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 04:40:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 00:40:21.896445 2026] [security2:error] [pid 32758:tid 32758] [client 104.23.221.110:12462] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.naturev.net"] [uri "/.git/config"] [unique_id "aoUztalTpRrfBAPqQj-6-QAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-19 03:41:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.110 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:41:16.818298 2026] [security2:error] [pid 6543:tid 6543] [client 104.23.221.110:11696] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.thehandyfamily.net"] [uri "/.git/config"] [unique_id "aoUl3IrPROH1kZ9rV62rkgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack