๐บ๐ธ
TPI-Abuse
2026-08-27 22:42:13
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 18:42:06.551039 2026] [security2:error] [pid 22406:tid 22406] [client 104.23.225.20:11222] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "seacorre.seacorre.com"] [uri "/.git/config"] [unique_id "apC9PtBIDJV0MDJrR0wo4gAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 08:58:18
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:58:13.430317 2026] [security2:error] [pid 31570:tid 31570] [client 104.23.225.20:11745] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.keeftone.com"] [uri "/.git/HEAD"] [unique_id "ao_8Jc4i03n_JfAGymvjiQAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-27 07:25:00
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 03:24:54.984443 2026] [security2:error] [pid 29315:tid 29315] [client 104.23.225.20:10452] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hdestimating.com"] [uri "/.git/config"] [unique_id "ao_mRp4asCxALN5PTvUQFwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 16:33:33
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 12:33:25.427088 2026] [security2:error] [pid 1150:tid 1150] [client 104.23.225.20:9554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.feathersolar.com"] [uri "/.git/config"] [unique_id "ao8VVd4ADYj9m1ejOPXWfgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-26 08:56:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 04:55:55.681822 2026] [security2:error] [pid 16446:tid 16446] [client 104.23.225.20:11577] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.perkowski.net"] [uri "/.git/config"] [unique_id "ao6qG6P2nxO0i8-odUvcgwAAADg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2026-08-26 07:34:40
(1 day ago)
/.git/HEAD
Hacking
Web App Attack
๐ฉ๐ช
iNetWorker
2026-08-24 17:40:16
(3 days ago)
trolling for resource vulnerabilities
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-24 07:28:32
(3 days ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 1 hits.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 23:11:32
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 19:11:25.567552 2026] [security2:error] [pid 8166:tid 8166] [client 104.23.225.20:10342] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.berkelmiami.com"] [uri "/.git/config"] [unique_id "aot-HQO70aQe9-ZgOnDD4QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-23 21:51:12
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 17:51:05.299208 2026] [security2:error] [pid 22690:tid 22830] [client 104.23.225.20:9976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ethniclivesmatter.aafm.us"] [uri "/.git/config"] [unique_id "aotrSc73EY6-GyVxOJClMwAAAdQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-08-22 10:06:04
(5 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
Anonymous
2026-08-21 23:05:04
(6 days ago)
GET /.git/config HTTP/1.1
...
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 11:14:08
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 07:14:01.151313 2026] [security2:error] [pid 306:tid 306] [client 104.23.225.20:12886] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.nacuajo.com"] [uri "/.git/HEAD"] [unique_id "aogy-fOSuH2hocLkyKlyQwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 10:21:00
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 06:20:50.686968 2026] [security2:error] [pid 32368:tid 32368] [client 104.23.225.20:12733] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.psdinnersready.com"] [uri "/.git/config"] [unique_id "aogmgtAy85u68ECr7VHalAAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 07:36:03
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.20 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 03:35:57.612698 2026] [security2:error] [pid 27028:tid 27028] [client 104.23.225.20:10946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.arcbridge.com"] [uri "/.git/HEAD"] [unique_id "aof_3U4HjgqPmlqME7PsLAAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack