๐บ๐ธ
TPI-Abuse
2026-08-29 15:01:53
(9 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 11:01:46.232911 2026] [security2:error] [pid 13939:tid 13939] [client 104.23.225.148:10992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.zydecajun.radio.fm"] [uri "/.git/config"] [unique_id "apL0Wr4XrZxeRXDWe3VdbwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 05:50:40
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 01:50:34.608242 2026] [security2:error] [pid 32365:tid 32365] [client 104.23.225.148:13992] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.vtwins.us"] [uri "/.git/HEAD"] [unique_id "apJzKgHKpIHxFgEEIFEPSwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 23:41:19
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 19:41:14.062635 2026] [security2:error] [pid 4853:tid 4853] [client 104.23.225.148:12215] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cuetzpalin.org"] [uri "/.git/config"] [unique_id "apIcmhy5wysjoKFqkKyuhwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:31:37
(1 day ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-28 00:16:08
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 20:16:04.175001 2026] [security2:error] [pid 28478:tid 28478] [client 104.23.225.148:12377] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.greensborolimobus.com"] [uri "/.git/config"] [unique_id "apDTRPt98VjgMn0Ht1ikAgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:15:43
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:15:37.321647 2026] [security2:error] [pid 17444:tid 17444] [client 104.23.225.148:11644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.blessedhavenfarm.com"] [uri "/.git/config"] [unique_id "ao9XeU2IUOiXnorGRQ4rmQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-26 20:54:25
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:57:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:56:53.659616 2026] [security2:error] [pid 549529:tid 549545] [client 104.23.225.148:10983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.citydentalclinic.com"] [uri "/.git/config"] [unique_id "ao8o5aKHc8vyIo5hQ60QawAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2026-08-26 17:28:33
(3 days ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 17:02:45
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:02:38.423684 2026] [security2:error] [pid 19772:tid 19772] [client 104.23.225.148:9932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.radtraininginc.net"] [uri "/.git/HEAD"] [unique_id "ao8cLiT9sGTFjsB0-H4-zgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
kumiko
2026-08-26 12:24:22
(3 days ago)
[2026-08-26 15:24:21] Probing for dotfiles
"GET /.git/config HTTP/2.0" 403
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 07:09:45
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:09:39.859523 2026] [security2:error] [pid 16884:tid 16907] [client 104.23.225.148:9466] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.cwminstitute.com"] [uri "/.git/HEAD"] [unique_id "ao6RMxDa6aGAh8yTp-IHpgAAANU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 04:10:10
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 00:10:07.337494 2026] [security2:error] [pid 4363:tid 4363] [client 104.23.225.148:9467] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.totaleventsandtents.com"] [uri "/.git/config"] [unique_id "ao5nH7PhmCpiu-qaA_XRJAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 04:56:15
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.148 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 00:56:09.677492 2026] [security2:error] [pid 7426:tid 7426] [client 104.23.225.148:14188] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.jesuspuzzle.com"] [uri "/.git/config"] [unique_id "ao0gaR9ASHL5_pUzws9AjgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-24 18:44:37
(5 days ago)
GET /.git/config HTTP/1.1
...
Web App Attack