๐บ๐ธ
TPI-Abuse
2026-09-25 11:41:51
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 07:41:49.670507 2026] [security2:error] [pid 19829:tid 19829] [client 104.23.223.121:9877] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bigcoins.com"] [uri "/.git/config"] [unique_id "arZd_ViCSygRfEARr7yN3QAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 09:30:00
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 05:29:53.655877 2026] [security2:error] [pid 10694:tid 10694] [client 104.23.223.121:14222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "aeomis.com"] [uri "/.git/config"] [unique_id "arY_Eaf0mfl5nMkusHfTDwAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Tsumugi Kotobuki
2026-09-19 21:41:17
(5 days ago)
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 55 | Len: 60B | Win: ...
show more
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 55 | Len: 60B | Win: 65535(1) | F2B/ufw-honeypot@2026-09-19T21:41:16Z
show less
Port Scan
Hacking
๐ง๐ช
madeit
2026-09-18 16:13:56
(6 days ago)
Web App Attack
๐ฉ๐ช
Vegascosmetics
2026-09-13 07:26:31
(1 week ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possi ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possible exploited host). Evidence: AttackPattern: \.php($|\?) (Match: .php?)
show less
Hacking
Exploited Host
Web App Attack
๐ง๐ช
madeit
2026-09-04 01:21:52
(3 weeks ago)
Web App Attack
๐บ๐ธ
craudiovizai
2026-09-01 06:30:56
(3 weeks ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
๐ท๐บ
DZBOT
2026-08-25 12:20:52
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 06:50:13
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 02:50:09.781690 2026] [security2:error] [pid 1542:tid 1542] [client 104.23.223.121:13757] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.yeejia.net"] [uri "/.git/HEAD"] [unique_id "aoVSIakhe1OsrRrpTAeJggAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 05:49:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 01:48:59.969592 2026] [security2:error] [pid 24798:tid 24798] [client 104.23.223.121:12223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.getagriponlife.net"] [uri "/.git/config"] [unique_id "aoVDy-QBlKA7YvJM-F14nQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 03:34:51
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:34:42.705000 2026] [security2:error] [pid 9790:tid 9790] [client 104.23.223.121:12438] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.blackstarmgmt.net"] [uri "/.git/config"] [unique_id "aoUkUrGWfgoS92f79cc5vQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 21:28:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 17:28:24.155742 2026] [security2:error] [pid 13739:tid 13739] [client 104.23.223.121:9265] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.tribalvisions.net"] [uri "/.git/HEAD"] [unique_id "aoN8-HFfIQiIK_ARHd-yVgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 16:12:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 12:12:20.183806 2026] [security2:error] [pid 3953:tid 3953] [client 104.23.223.121:14202] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.advantage-plus.net"] [uri "/.git/HEAD"] [unique_id "aoMy5DoWU4bgL-w64KuusAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 10:57:28
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 06:57:20.113970 2026] [security2:error] [pid 19406:tid 19406] [client 104.23.223.121:12234] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "shafie.net"] [uri "/.git/config"] [unique_id "aoLpEG4VTUrFqpft729n5AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 10:18:48
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.223.121 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 06:18:40.906514 2026] [security2:error] [pid 5776:tid 5776] [client 104.23.223.121:12977] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robotrodeo.net"] [uri "/.git/HEAD"] [unique_id "aoLgAEckxK6Omb8WTKh7vAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack