๐ซ๐ท
dynamix
2026-09-20 11:08:21
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
dynamix
2026-09-17 12:33:35
(4 days ago)
Multiple WAF Violations
Web App Attack
๐ง๐ช
madeit
2026-09-10 20:51:37
(1 week ago)
Web App Attack
๐ฉ๐ช
kkw
2026-09-03 18:50:55
(2 weeks ago)
[REDACTED] 104.23.225.181 - - [03/Sep/2026:20:50:54 +0200] "GET /old/xmlrpc.php HTTP/2.0" 404 281671 ...
show more
[REDACTED] 104.23.225.181 - - [03/Sep/2026:20:50:54 +0200] "GET /old/xmlrpc.php HTTP/2.0" 404 281671 "http://szkola.gorajec.pl/old/xmlrpc.php" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.1.15"
... (mode: searching http-sensitive-files)
show less
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-08-31 19:55:20
(3 weeks ago)
[MonAug3121:55:13.5360922026][security2:error][pid2916:tid3086][client104.23.225.181:0]ModSecurity:A ...
show more
[MonAug3121:55:13.5360922026][security2:error][pid2916:tid3086][client104.23.225.181:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"benvenutialfood.biz\"][uri\"/.git/config\"][unique_id\"apXcIbtBrsOWSmBUkNwdiwAAAEA\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 17:51:57
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 13:51:53.112884 2026] [security2:error] [pid 2687:tid 2687] [client 104.23.225.181:10361] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.boatpeople.org"] [uri "/.git/config"] [unique_id "apMcObg4MXNvfjugtwLHjAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-29 10:26:11
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 29 06:26:04.787995 2026] [security2:error] [pid 23438:tid 23438] [client 104.23.225.181:14141] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.judithchallender.com"] [uri "/.git/HEAD"] [unique_id "apKzvFWxyIxWW1dQNSM-3QAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
voormedia
2026-08-28 12:25:00
(3 weeks ago)
Accessed trap at '/.git/HEAD'
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 07:44:17
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 03:44:10.196038 2026] [security2:error] [pid 20514:tid 20514] [client 104.23.225.181:14255] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.bhartman.com"] [uri "/.git/HEAD"] [unique_id "apE8SvIlcK6WV6koBnmzogAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-28 01:24:09
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 21:24:05.457657 2026] [security2:error] [pid 3907824:tid 3907931] [client 104.23.225.181:11064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nationsrecovery.com"] [uri "/.git/HEAD"] [unique_id "apDjNXR3km047mRQW0InVgAAAZQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 14:43:38
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:43:34.508907 2026] [security2:error] [pid 21873:tid 21873] [client 104.23.225.181:12678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "juhoanttila.com"] [uri "/.git/config"] [unique_id "apBNFkMT-AwZRAGfGnyplAAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 06:53:35
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 02:53:29.191676 2026] [security2:error] [pid 3083:tid 3083] [client 104.23.225.181:11083] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.lazymanvegan.com"] [uri "/.git/HEAD"] [unique_id "ao6NaZ2fBBphP8-MYX4xCAAAAF4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-25 22:25:05
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 18:24:59.273103 2026] [security2:error] [pid 6326:tid 6326] [client 104.23.225.181:12351] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.ecrecorp.com"] [uri "/.git/HEAD"] [unique_id "ao4WO7FtlpZGLfNZdg7g5wAAAEk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 19:36:39
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 15:36:32.884126 2026] [security2:error] [pid 21012:tid 21012] [client 104.23.225.181:13321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.filardi.org"] [uri "/.git/HEAD"] [unique_id "aoydQEVvQjozLT0eg6ioLAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 15:10:40
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:10:35.232910 2026] [security2:error] [pid 30890:tid 30890] [client 104.23.225.181:10727] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.albertawaterjet.com"] [uri "/.git/HEAD"] [unique_id "aoxe67bVFYId2X9X_I_I-AAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack