๐บ๐ธ
TPI-Abuse
2026-10-10 02:24:24
(53 minutes ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 09 22:24:17.854254 2026] [security2:error] [pid 16877:tid 16877] [client 104.23.225.96:10960] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "zenmonkeyproject.com"] [uri "/.git/config"] [unique_id "asmh0fhGXLfUGA2Low9_JwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-10-08 11:15:50
(1 day ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 08:52:15
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ท๐ธ
iphouse
2026-09-29 22:30:04
(1 week ago)
Failed login attempt detected by Fail2Ban in plesk-apache jail
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-25 10:02:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 06:02:08.832465 2026] [security2:error] [pid 30249:tid 30249] [client 104.23.225.96:10275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amywoodruff.com"] [uri "/.git/config"] [unique_id "arZGoCOza2VkOev1nd6dewAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-17 10:51:11
(3 weeks ago)
IP matched detection query many 3xx errors.
Brute-Force
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-09 13:07:54
(1 month ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ฉ๐ช
wiredalter
2026-09-08 09:53:12
(1 month ago)
Blocked by UFW on dVPS [8443/tcp]
Source Port: 13615
TTL: 55
Packet Length: 60
TOS: 0x00
Analyzed b ...
show more
Blocked by UFW on dVPS [8443/tcp]
Source Port: 13615
TTL: 55
Packet Length: 60
TOS: 0x00
Analyzed by https://ip.wiredalter.com
show less
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-02 10:54:03
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 02 06:53:55.717403 2026] [security2:error] [pid 18480:tid 18480] [client 104.23.225.96:11946] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ecruhairsalon.com"] [uri "/.git/config"] [unique_id "apgAQx92HU5FhsmY6tnRxQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 16:07:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 12:07:29.673740 2026] [security2:error] [pid 26986:tid 27026] [client 104.23.225.96:12195] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "paulvester.com"] [uri "/.git/HEAD"] [unique_id "apb4QUrGwZXCb5St2l7R_wAAAMQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
spot
2026-08-31 21:46:48
(1 month ago)
104.23.225.96 - - [31/Aug/2026:22:46:47 +0100] "GET /.git/HEAD HTTP/1.1" 404 4697 "-" "Mozilla/5.0 ( ...
show more
104.23.225.96 - - [31/Aug/2026:22:46:47 +0100] "GET /.git/HEAD HTTP/1.1" 404 4697 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/125.0.0.0 Safari/537.36"
...
show less
Web App Attack
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 21:24:13
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 17:24:05.976819 2026] [security2:error] [pid 32718:tid 32725] [client 104.23.225.96:11002] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lordennerdale.com"] [uri "/.git/HEAD"] [unique_id "apXw9ZwWIS1_xzjxF5JnVAAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 17:45:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 13:45:04.920974 2026] [security2:error] [pid 11312:tid 11312] [client 104.23.225.96:11403] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goldenfrytech.net"] [uri "/.git/config"] [unique_id "apW9oMXjOzE4eduL1fldowAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 15:39:48
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 11:39:45.111011 2026] [security2:error] [pid 19988:tid 19988] [client 104.23.225.96:10742] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "gacstoday.com"] [uri "/.git/config"] [unique_id "apWgQSooo_9XOybSgyRWzwAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:33:52
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.225.96 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:33:44.482860 2026] [security2:error] [pid 7784:tid 7784] [client 104.23.225.96:10379] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "jasconius.org"] [uri "/.git/config"] [unique_id "apU8aBvBcDU8COTW2xGJswAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack