๐จ๐ฟ
sajmon0011
2026-08-29 09:44:03
(11 hours ago)
104.23.225.18 - - [29/Aug/2026:11:44:03 +0200] "GET /.git/config HTTP/2.0" 404 196 "-" "Mozilla/5.0 ...
show more
104.23.225.18 - - [29/Aug/2026:11:44:03 +0200] "GET /.git/config HTTP/2.0" 404 196 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:126.0) Gecko/20100101 Firefox/126.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 06:03:04
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 02:02:59.304402 2026] [security2:error] [pid 28431:tid 28431] [client 104.23.225.18:9652] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.title15.com"] [uri "/.git/config"] [unique_id "apJ2E90vy9nwk0C_62dtOgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
micropedro
2026-08-28 15:10:50
(1 day ago)
8 incidents: web scanning/attack. First: 2026-08-28 11:10, Last: 2026-08-28 11:10 UTC. Triggers: fir ...
show more
8 incidents: web scanning/attack. First: 2026-08-28 11:10, Last: 2026-08-28 11:10 UTC. Triggers: firewall-http.
show less
Port Scan
Web App Attack
๐ฉ๐ช
abdubhai
2026-08-27 11:02:09
(2 days ago)
104.23.225.18 - - [27/Aug/2026:1
...
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-27 05:57:33
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 01:57:25.778081 2026] [security2:error] [pid 6534:tid 6562] [client 104.23.225.18:12839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.inkandthreadllc.com"] [uri "/.git/HEAD"] [unique_id "ao_RxX9G42Qjmb07sY5VsAAAARY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 21:15:23
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 17:15:16.451785 2026] [security2:error] [pid 18548:tid 18548] [client 104.23.225.18:10869] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.flyingcardcompany.com"] [uri "/.git/config"] [unique_id "ao9XZC2xU0q53GE7gBIZWwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 19:21:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 15:21:46.209772 2026] [security2:error] [pid 28012:tid 28012] [client 104.23.225.18:11151] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lumentravel.com"] [uri "/.git/HEAD"] [unique_id "ao88yp9662CPMMozkt6QggAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 07:26:17
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:26:10.138148 2026] [security2:error] [pid 3590:tid 3590] [client 104.23.225.18:11165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "al-harbi.com"] [uri "/.git/HEAD"] [unique_id "ao6VEjcyMtkJBrNioNSr_QAAAFs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 02:15:13
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 22:15:09.868036 2026] [security2:error] [pid 25553:tid 25553] [client 104.23.225.18:11498] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zztp.ws"] [uri "/.git/config"] [unique_id "ao5MLbIzRL5QZCOfT3ODXgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:26:28
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:26:20.276441 2026] [security2:error] [pid 20865:tid 20865] [client 104.23.225.18:12390] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.ronjamestelevision.com"] [uri "/.git/HEAD"] [unique_id "ao4WjFwSau4oLv8mXR9N3gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 13:57:49
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:57:42.972077 2026] [security2:error] [pid 1786381:tid 1786387] [client 104.23.225.18:9554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.torreymanagement.com"] [uri "/.git/HEAD"] [unique_id "ao2fVm3ghWY5tl6mfBUVaAAAAEM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 13:14:55
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 09:14:46.111268 2026] [security2:error] [pid 13560:tid 13560] [client 104.23.225.18:12708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.guthrieclan.us"] [uri "/.git/HEAD"] [unique_id "ao2VRkhXmfk_e9vgVdw2wwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-25 01:47:02
(4 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 18:25:17
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 14:25:03.865170 2026] [security2:error] [pid 26415:tid 26415] [client 104.23.225.18:14062] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.allautousa.airintakesonline.com"] [uri "/.git/HEAD"] [unique_id "aoyMf_QaFkrR2mXo8TMddQAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 17:26:18
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.18 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 13:26:14.767538 2026] [security2:error] [pid 12164:tid 12164] [client 104.23.225.18:11013] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thehiddengemmalta.com"] [uri "/.git/config"] [unique_id "aox-tlj6Z7v588xYUuLi9gAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack