๐ฉ๐ช
FeG Deutschland
2026-09-01 09:59:31
(1 day ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฉ๐ช
jbcrn
2026-09-01 08:47:25
(1 day ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Other, ruleset: cloudflare-worker. Requ ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Other, ruleset: cloudflare-worker. Requested honeypot path: /.git/config. User-Agent: Wget/1.21.3 (linux-gnu)
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:11:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:11:31.280549 2026] [security2:error] [pid 29073:tid 29073] [client 104.23.225.149:11384] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mikethehomehelper.com"] [uri "/.git/HEAD"] [unique_id "apU3MxjQ4C90mCwcxcT-7QAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 19:16:18
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 15:16:12.163779 2026] [security2:error] [pid 16522:tid 16534] [client 104.23.225.149:13146] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "billingsleyonline.com"] [uri "/.git/HEAD"] [unique_id "apSBfOre3ujDAsQTMJt2HwAAAUk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-30 13:00:16
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 09:00:10.814245 2026] [security2:error] [pid 22093:tid 22093] [client 104.23.225.149:10976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "portraitgalleria.com"] [uri "/.git/config"] [unique_id "apQpWrOaLkRhb6ygVam1uAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 19:18:45
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 15:18:37.403422 2026] [security2:error] [pid 26560:tid 26560] [client 104.23.225.149:13115] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.newcangroup.com"] [uri "/.git/config"] [unique_id "apMwjdf3h7Uwlyf93yjlKwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 17:28:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 13:28:00.816069 2026] [security2:error] [pid 10478:tid 10478] [client 104.23.225.149:13764] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.dvdmasters.com"] [uri "/.git/config"] [unique_id "apMWoP0LabxQLYqJNTqOWwAAAIc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 15:01:53
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 11:01:46.232945 2026] [security2:error] [pid 4096:tid 4096] [client 104.23.225.149:11277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.zydecajun.radio.fm"] [uri "/.git/HEAD"] [unique_id "apL0WpCGiHBCFi_i9NDu_gAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 11:17:58
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 07:17:50.731282 2026] [security2:error] [pid 25132:tid 25132] [client 104.23.225.149:9760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.susannahtuttle.com"] [uri "/.git/HEAD"] [unique_id "apFuXu-Wvc996PHt3LeI2AAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 06:30:58
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 02:30:51.028968 2026] [security2:error] [pid 23243:tid 23243] [client 104.23.225.149:12181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.automotiveforms.net"] [uri "/.git/HEAD"] [unique_id "apErG-KAgPMafG5O3S5CdAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-28 04:31:36
(5 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-08-27 03:45:31
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.149 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 23:45:24.613457 2026] [security2:error] [pid 1512506:tid 1512531] [client 104.23.225.149:11953] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.sattraffic.com"] [uri "/.git/config"] [unique_id "ao-y1G4o2jv0_JwE14ALNQAAAdU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-26 20:54:26
(1 week ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
Rip
2026-08-26 17:28:34
(1 week ago)
Restricted File Access Attempts
Port Scan
Web App Attack
๐ซ๐ฎ
kumiko
2026-08-26 12:24:22
(1 week ago)
[2026-08-26 15:24:21] Probing for dotfiles
"GET /.git/HEAD HTTP/2.0" 403
Bad Web Bot
Web App Attack