๐บ๐ธ
TPI-Abuse
2026-06-29 05:42:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 01:42:21.879928 2026] [security2:error] [pid 16388:tid 16388] [client 104.23.221.46:14087] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web202.dnchosting.com"] [uri "/.git/config"] [unique_id "akIFvYL1osj-OjWclz6VaQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-28 16:20:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 12:20:26.464047 2026] [security2:error] [pid 11619:tid 11619] [client 104.23.221.46:13893] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "peterjohnsonauthor.peterjohnsonya.com"] [uri "/.git/config"] [unique_id "akFJyuNswoYiNQykK1n2tQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mawan
2026-06-23 08:29:15
(1 week ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
ph
2026-06-17 19:29:44
(1 week ago)
Bad web bot attempting to run wp-admin on non-WP site
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-16 08:31:37
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 04:31:29.884500 2026] [security2:error] [pid 27507:tid 27507] [client 104.23.221.46:10481] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "adelaidapacific.com"] [uri "/.git/config"] [unique_id "ajEJ4S96piNIzRaZwFtp_QAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-06-16 07:00:44
(2 weeks ago)
Automated recon attempt targeting restricted and sensitive paths.
Web App Attack
๐บ๐ธ
mnsf
2026-06-16 02:05:57
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ท๐บ
DZBOT
2026-06-10 01:31:29
(2 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-09 15:26:58
(2 weeks ago)
Known malicious PHP file or CMS probe
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-24 13:17:57
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 24 09:17:49.301043 2026] [security2:error] [pid 27180:tid 27180] [client 104.23.221.46:11864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.aurumprivatecapital.com.38floorsupply.com"] [uri "/.env.production"] [unique_id "ahL6fWX25D2xIvqH6MyiIAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-05-23 13:47:47
(1 month ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-23 11:14:43
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 23 07:14:37.922713 2026] [security2:error] [pid 914:tid 914] [client 104.23.221.46:12193] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "help.go4food.com"] [uri "/.git/config"] [unique_id "ahGMHZ6WQTHDpiI-RZaQyAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-19 22:01:09
(1 month ago)
Auto-ban: >3000 req/min op 2026-05-19
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-05-17 12:43:32
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 17 08:43:29.297599 2026] [security2:error] [pid 15165:tid 15165] [client 104.23.221.46:11412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "intrialconsultants.com"] [uri "/.git/config"] [unique_id "agm38dT4mcr2K7Rhy8z_fwAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-16 20:09:57
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack