๐ฉ๐ช
sternwart
2026-10-10 11:34:56
(16 hours ago)
Automatisch erkannt: Zugriff auf /.git/config (my-coach.ch)
Web App Attack
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-10-09 19:55:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 15:55:46.192154 2026] [security2:error] [pid 3939:tid 3939] [client 104.23.221.83:9345] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seahattravel.com"] [uri "/.git/config"] [unique_id "aslGwpiCtxDE8OUrFrVHGAAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-09 05:41:45
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 01:41:41.190410 2026] [security2:error] [pid 10525:tid 10525] [client 104.23.221.83:12448] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bizzybeejunkremoval.com"] [uri "/.git/config"] [unique_id "ash-lQ9CLkf3XODsvNFMPQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 03:34:56
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 23:34:51.710999 2026] [security2:error] [pid 27407:tid 27407] [client 104.23.221.83:9870] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.adamsclothiers.com"] [uri "/.git/config"] [unique_id "asRsW-d0Dz5aanbrR1e5cgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ฌ
anotherwatcher
2026-10-05 19:08:18
(5 days ago)
bad bot
Bad Web Bot
๐ณ๐ด
jad-abuse
2026-10-01 02:16:17
(1 week ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 2 hits.
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 15:31:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 11:31:28.485555 2026] [security2:error] [pid 1278:tid 1278] [client 104.23.221.83:9935] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "orlando-windsor-villa.com"] [uri "/.git/config"] [unique_id "ar0rUGS2tUDjLHSnP3aVUQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-30 02:37:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 22:37:10.380211 2026] [security2:error] [pid 7012:tid 7012] [client 104.23.221.83:9664] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graficasbis.com"] [uri "/.git/config"] [unique_id "arx11rBt70ha4JLdm_f4rQAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-09-27 03:45:00
(2 weeks ago)
WAF (2) - Malicious activity detected: URL probing.
Bad Web Bot
Web App Attack
Hacking
๐ฉ๐ช
netclix.gr
2026-09-25 20:29:49
(2 weeks ago)
(bot_kill_mega) Aggressive Bot Blocked: Go-http-client 104.23.221.83 (SE/Sweden/-): 1 in the last 46 ...
show more
(bot_kill_mega) Aggressive Bot Blocked: Go-http-client 104.23.221.83 (SE/Sweden/-): 1 in the last 4600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 104.23.221.83 - - [25/Sep/2026:23:28:14 +0300] "POST /login_up.php HTTP/2.0" 200 29723 "-" "Go-http-client/1.1" "20.251.194.156"'/login_up.php' '' '/opt/psa/admin/htdocs'
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-09-25 19:32:56
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 15:32:50.904527 2026] [security2:error] [pid 9511:tid 9531] [client 104.23.221.83:13527] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pluralmatrix.com"] [uri "/.git/config"] [unique_id "arbMYtONZCymUrFfGpyUBgAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 18:26:52
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 14:26:45.154154 2026] [security2:error] [pid 18237:tid 18237] [client 104.23.221.83:11355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kadimasecurity.com"] [uri "/.git/config"] [unique_id "ara85cPLnys_NT1cIvULHAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 15:49:12
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 11:49:07.379146 2026] [security2:error] [pid 536:tid 536] [client 104.23.221.83:14152] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "developerdove.com"] [uri "/.git/config"] [unique_id "araX82p0-g9P8TFFwgZOBgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 12:15:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 08:15:48.746172 2026] [security2:error] [pid 30872:tid 30872] [client 104.23.221.83:9517] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "camerongunsmith.com"] [uri "/.git/config"] [unique_id "arZl9NXUISSyYmhpFBqSSQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 10:46:47
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.221.83 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 06:46:40.809955 2026] [security2:error] [pid 5503:tid 5503] [client 104.23.221.83:12034] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bizzybeejunkremoval.com"] [uri "/.git/config"] [unique_id "arZREIe_Jy_je4wgvI5eMQAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack