๐บ๐ธ
TPI-Abuse
2026-08-30 04:13:20
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 30 00:13:13.771602 2026] [security2:error] [pid 27591:tid 27604] [client 104.23.225.159:9400] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "rawsynergy.com"] [uri "/.git/HEAD"] [unique_id "apOt2YCP1Wr00ULc7cqzTgAAAMo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 23:19:31
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 19:19:27.914601 2026] [security2:error] [pid 19805:tid 19805] [client 104.23.225.159:12618] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.thedreamcatchers.eu"] [uri "/.git/HEAD"] [unique_id "apNo_7KljNjjeWHAjBb4ngAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 19:14:09
(10 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 15:14:02.075940 2026] [security2:error] [pid 20184:tid 20184] [client 104.23.225.159:11644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sendera.mx"] [uri "/.git/HEAD"] [unique_id "apMvepAUv8hwAW-TaZbbOwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 01:43:27
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 21:43:22.255519 2026] [security2:error] [pid 19399:tid 19399] [client 104.23.225.159:10111] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "stellwagenmusic.com"] [uri "/.git/HEAD"] [unique_id "apI5OjihKiCQVa0ziHzq5wAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 21:10:32
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 17:10:29.495392 2026] [security2:error] [pid 14499:tid 14499] [client 104.23.225.159:10268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.michaelholdaway.com"] [uri "/.git/config"] [unique_id "apH5RWXAO0Qt9rj575LoOAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 02:16:38
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 22:16:32.919262 2026] [security2:error] [pid 17469:tid 17469] [client 104.23.225.159:11815] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.wordspectrum.com"] [uri "/.git/HEAD"] [unique_id "apDvgKKieOnVuQRCvbBBqwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-27 23:46:34
(2 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 01:41:50
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:41:46.428133 2026] [security2:error] [pid 7683:tid 7683] [client 104.23.225.159:11408] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okeetokee.org"] [uri "/.git/config"] [unique_id "ao-V2nN80L46OxzG4Du7LAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:30:10
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:30:03.467837 2026] [security2:error] [pid 5244:tid 5244] [client 104.23.225.159:9412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cherylpelletier.com"] [uri "/.git/HEAD"] [unique_id "ao9a29pJp3Z9wWYfQahdwwAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 12:54:59
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 08:54:52.596667 2026] [security2:error] [pid 1404:tid 1404] [client 104.23.225.159:9570] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.mimitudordesigns.com"] [uri "/.git/HEAD"] [unique_id "ao7iHJkU_YWD-s7Nl6dtSAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 10:19:02
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 06:18:57.810754 2026] [security2:error] [pid 1707:tid 1707] [client 104.23.225.159:12717] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.zztp.ws"] [uri "/.git/config"] [unique_id "ao69kccEKi7XvydgVeFS1AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 13:15:02
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.159 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:14:55.935899 2026] [security2:error] [pid 18946:tid 18946] [client 104.23.225.159:11468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.webuychesterfieldhouses.com"] [uri "/.git/config"] [unique_id "ao2VT-J5Y3Jpz-xcCleYTQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-08-25 13:03:24
(4 days ago)
104.23.225.159 - - [25/Aug/2026:07:03:23 -0600] "GET /.git/config HTTP/2.0" 301 410 "-" "Mozilla/5.0 ...
show more
104.23.225.159 - - [25/Aug/2026:07:03:23 -0600] "GET /.git/config HTTP/2.0" 301 410 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-08-25 00:56:57
(5 days ago)
[Tue Aug 25 10:56:56.797195 2026] [security2:error] [pid 179020] [client 104.23.225.159:9717] [clien ...
show more
[Tue Aug 25 10:56:56.797195 2026] [security2:error] [pid 179020] [client 104.23.225.159:9717] [client 104.23.225.159] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "balcomberetreat.com.au"] [uri "/.git/HEAD"] [unique_id "aozoWGd8K1RfJKr5plohmAAAABw"]
...
show less
Web App Attack
๐จ๐ญ
4server
2026-08-24 21:55:50
(5 days ago)
[MonAug2423:55:46.7571852026][security2:error][pid1138057:tid1138295][client104.23.225.159:0]ModSecu ...
show more
[MonAug2423:55:46.7571852026][security2:error][pid1138057:tid1138295][client104.23.225.159:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"gamotors.ch\"][uri\"/.git/HEAD\"][unique_id\"aoy94kBELXtqeWTAfxlQuwAAARM\"]
show less
Hacking
Web App Attack