Anonymous
2026-08-21 11:48:11
(18 hours ago)
[Fri Aug 21 13:48:10.349426 2026] [authz_core:error] [pid 10297] [client 104.23.221.156:11730] AH016 ...
show more
[Fri Aug 21 13:48:10.349426 2026] [authz_core:error] [pid 10297] [client 104.23.221.156:11730] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Aug 21 13:48:10.451333 2026] [authz_core:error] [pid 10297] [client 104.23.221.156:11730] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Fri Aug 21 13:48:10.558205 2026] [authz_core:error] [pid 10297] [client 104.23.221.156:11730] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ฎ๐ฉ
Burayot
2026-08-19 03:05:38
(3 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.23.221.156 (SE/Sweden/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 104.23.221.156 (SE/Sweden/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 02:21:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 22:20:52.244773 2026] [security2:error] [pid 9072:tid 9072] [client 104.23.221.156:10949] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.xn--lyngr-yua.net"] [uri "/.git/config"] [unique_id "aoUTBNznjUyjxBtkWwEt9AAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 21:25:07
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 17:24:59.751773 2026] [security2:error] [pid 16657:tid 16657] [client 104.23.221.156:13736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.amazinggraceministries.net"] [uri "/.git/config"] [unique_id "aoN8K7CZ5mHQB-9n0i8nwwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 16:12:23
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 12:12:16.572091 2026] [security2:error] [pid 15962:tid 15962] [client 104.23.221.156:12960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.4ehardware.net"] [uri "/.git/HEAD"] [unique_id "aoMy4LbsXa4bB9U9dDcpBgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:06:25
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:06:21.853704 2026] [security2:error] [pid 21140:tid 21140] [client 104.23.221.156:12000] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.northernfrontier.net"] [uri "/.git/HEAD"] [unique_id "aoJ6rdgN3rfElf_e3PCb7gAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:46:02
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:45:57.758826 2026] [security2:error] [pid 24810:tid 24810] [client 104.23.221.156:14155] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.juniperhills.net"] [uri "/.git/config"] [unique_id "aoJn1ZSr-uhgd7c1TaqKcgAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 23:43:12
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 19:43:08.701243 2026] [security2:error] [pid 17255:tid 17255] [client 104.23.221.156:9285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.langkawi-boat-registration.com"] [uri "/.git/config"] [unique_id "aoJLDDzD02wN2SDoE9wFvwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 23:16:19
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 19:16:11.501733 2026] [security2:error] [pid 24194:tid 24194] [client 104.23.221.156:9729] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hawleyrentals.com"] [uri "/.git/config"] [unique_id "aoJEu6Nla_S2Gw5syonMjAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 22:58:29
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 18:58:24.032965 2026] [security2:error] [pid 4258:tid 4269] [client 104.23.221.156:13255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.dpiazza.com"] [uri "/.git/HEAD"] [unique_id "aoJAkBei_djzfH-YcfvGgAAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-08-16 08:38:55
(5 days ago)
dot file probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:20:16
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.156 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:20:11.537406 2026] [security2:error] [pid 31141:tid 31141] [client 104.23.221.156:13935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.havelocktruckandauto.ca"] [uri "/.git/HEAD"] [unique_id "aoFWm43bEpSMuWOdL4sGiAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-16 03:23:55
(6 days ago)
[Sun Aug 16 05:23:54.429884 2026] [authz_core:error] [pid 5256] [client 104.23.221.156:9893] AH01630 ...
show more
[Sun Aug 16 05:23:54.429884 2026] [authz_core:error] [pid 5256] [client 104.23.221.156:9893] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Aug 16 05:23:54.469927 2026] [authz_core:error] [pid 5256] [client 104.23.221.156:9893] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Aug 16 05:23:54.551985 2026] [authz_core:error] [pid 5256] [client 104.23.221.156:9893] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-15 13:40:40
(6 days ago)
[15/Aug/2026:16:40:40 +0300] -- 104.23.221.156 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[15/Aug/2026:16:40:40 +0300] -- 104.23.221.156 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
craudiovizai
2026-08-15 12:30:14
(6 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot