๐บ๐ธ
TPI-Abuse
2026-08-19 03:02:41
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:02:36.112084 2026] [security2:error] [pid 27804:tid 27804] [client 104.23.225.134:11811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.ritterlien.com"] [uri "/.git/HEAD"] [unique_id "aoUczCoWTwILEYBDwjCo-AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 01:30:29
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 21:30:23.490408 2026] [security2:error] [pid 22361:tid 22361] [client 104.23.225.134:10293] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.spectorworld.com"] [uri "/.git/config"] [unique_id "aoUHLx2KzQbN99yI0z7DbgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 00:36:26
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 20:36:17.030709 2026] [security2:error] [pid 4991:tid 5276] [client 104.23.225.134:14028] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.cwpianolessons.com"] [uri "/.git/config"] [unique_id "aoT6gfbALGOM7Ztx_Y758gAAAQU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 23:01:08
(5 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 19:01:04.633651 2026] [security2:error] [pid 8301:tid 8301] [client 104.23.225.134:9385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.darkalleyproductions.com"] [uri "/.git/HEAD"] [unique_id "aoTkMK-cyVREngAYrvntKwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 11:52:17
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 07:52:12.357396 2026] [security2:error] [pid 10052:tid 10052] [client 104.23.225.134:11928] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jamesedwardskinner.com"] [uri "/.git/HEAD"] [unique_id "aoRHbGjoKebCnCQYyctcZAAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 10:28:44
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 06:28:41.457161 2026] [security2:error] [pid 19170:tid 19170] [client 104.23.225.134:12736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.ecomim.com"] [uri "/.git/HEAD"] [unique_id "aoQz2ZdTD7io6KzL5X84dgAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 03:02:10
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 23:02:05.534205 2026] [security2:error] [pid 17542:tid 17542] [client 104.23.225.134:12212] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.nickersoncarpentry.com"] [uri "/.git/HEAD"] [unique_id "aoPLLaVQF6pLifps6VuAdwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 00:46:53
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 20:46:47.143237 2026] [security2:error] [pid 20025:tid 20025] [client 104.23.225.134:11774] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.m2oblivion.com"] [uri "/.git/config"] [unique_id "aoOrd3moyEra0JGDd2UrjwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 22:38:58
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 18:38:52.985483 2026] [security2:error] [pid 8466:tid 8466] [client 104.23.225.134:9329] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.texasfurnitureinc.com"] [uri "/.git/config"] [unique_id "aoONfNGn2KRdIiUe6d2ifwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 01:15:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:15:08.080143 2026] [security2:error] [pid 585:tid 585] [client 104.23.225.134:14264] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.k-and-l-contractors.com"] [uri "/.git/config"] [unique_id "aoJgnE5vPzgwDuiRNL31SgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 07:01:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 03:01:13.638245 2026] [security2:error] [pid 5668:tid 5688] [client 104.23.225.134:13084] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.rilap.us"] [uri "/.git/config"] [unique_id "aoFgOb43-BqcKgjvPfWYpwAAAUc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 06:28:22
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 02:28:15.675685 2026] [security2:error] [pid 15653:tid 15653] [client 104.23.225.134:13546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.myomni.us"] [uri "/.git/config"] [unique_id "aoFYf_HbkCgqfbSgk6m99gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-06 02:37:16
(1 week ago)
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-02 18:49:52
(2 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-02 19:49:51 UTC
Log evidence:
104.23.225.134 - - [02/Aug/2026:19:49:50 +0100] "GET /swagger-ui/swagger-ui-standalone-preset%2ejs HTTP/1.1" 404 118 "-" "curl/8.7.1"
08/02/2026-19:49:50.625494 [**] [1:1000201:1] SCANNER: Bot-like User-Agent Detected [**] [Classification: Attempted Information Leak] [Priority: 2] {TCP} 104.23.225.134:10595 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
Anonymous
2026-07-30 06:18:25
(2 weeks ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack