πΊπΈ
TPI-Abuse
2026-08-29 02:50:58
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 22:50:52.658945 2026] [security2:error] [pid 14400:tid 14400] [client 104.23.225.77:9968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "egelfitness.nl"] [uri "/.git/HEAD"] [unique_id "apJJDKgbNhdvQv16upfA1AAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π΄
jad-abuse
2026-08-28 16:58:33
(18 hours ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_expos ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: git_exposure. Observed by 1 sensor(s); 2 hits.
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-28 16:55:48
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 12:55:40.487814 2026] [security2:error] [pid 7144:tid 7144] [client 104.23.225.77:13640] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.nwsci.net"] [uri "/.git/HEAD"] [unique_id "apG9jB0E5R03cSEEUm1bNQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
creechy
2026-08-28 12:57:22
(22 hours ago)
104.23.225.77 - - [28/Aug/2026:05:57:14 -0700] "GET /.git/HEAD HTTP/1.1" 404 765
...
Hacking
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-28 10:50:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 06:50:19.512031 2026] [security2:error] [pid 744726:tid 744841] [client 104.23.225.77:12321] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lesleyhcampbell.com"] [uri "/.git/HEAD"] [unique_id "apFn6y40Lukm4Uy0argl1QAAAVQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 14:44:20
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 10:44:12.692752 2026] [security2:error] [pid 32053:tid 32053] [client 104.23.225.77:10952] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cartiologyfilms.com"] [uri "/.git/config"] [unique_id "apBNPO5O8TNIVbMIKkrkdwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 08:40:55
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 27 04:40:50.808045 2026] [security2:error] [pid 11291:tid 11291] [client 104.23.225.77:9917] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gesegurospma.com"] [uri "/.git/HEAD"] [unique_id "ao_4EiOkm-vbzdpfDSYcbgAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-27 01:42:10
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 21:42:05.833702 2026] [security2:error] [pid 22966:tid 22966] [client 104.23.225.77:9848] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.fuentevictoria.com"] [uri "/.git/config"] [unique_id "ao-V7QYiJp17FYZf6_3cGwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 17:01:54
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 13:01:45.967756 2026] [security2:error] [pid 3098:tid 3098] [client 104.23.225.77:12488] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.elegantweddingnapkins.com"] [uri "/.git/HEAD"] [unique_id "ao8b-eig3qX0JaPoT3fYWgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-26 07:00:35
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 26 03:00:26.874497 2026] [security2:error] [pid 14212:tid 14212] [client 104.23.225.77:12766] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.montgomeryhistoricalsociety.org"] [uri "/.git/HEAD"] [unique_id "ao6PCpDSByw8S6se5XYScAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
FeG Deutschland
2026-08-25 20:54:13
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-25 18:10:47
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 25 14:10:42.736351 2026] [security2:error] [pid 17604:tid 17604] [client 104.23.225.77:9899] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.portfolio.hotelausland.com"] [uri "/.git/config"] [unique_id "ao3aostU_yAVWzyTAQZBZwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
pltcldvlpr
2026-08-24 20:01:00
(4 days ago)
CMS/framework probe: 104.23.225.77 - - [24/Aug/2026:22:00:58 +0200] "GET /.git/config HTTP/2.0" 404 ...
show more
CMS/framework probe: 104.23.225.77 - - [24/Aug/2026:22:00:58 +0200] "GET /.git/config HTTP/2.0" 404 230 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36" asn=13335 org="Cloudflare, Inc." country=FR
...
show less
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 19:15:32
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 15:15:24.477864 2026] [security2:error] [pid 23969:tid 23969] [client 104.23.225.77:13185] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.kbalan.com"] [uri "/.git/config"] [unique_id "aoyYTMx3wH-4YcuKVQWHcgAAAFI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-24 11:00:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 07:00:00.825666 2026] [security2:error] [pid 20235:tid 20235] [client 104.23.225.77:12616] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.illumoonatedtarot.com"] [uri "/.git/HEAD"] [unique_id "aowkMDZavygfVCggzK2ucwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack