๐บ๐ธ
TPI-Abuse
2026-03-29 19:19:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 15:19:19.878348 2026] [security2:error] [pid 20576:tid 20576] [client 104.23.239.136:11114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "richmondrents.com"] [uri "/.env.dev"] [unique_id "acl7NyzOODciBxYDrnXTwwAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-03-29 17:42:29
(2 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:cf-worker. (5025-195)
Hacking
๐บ๐ธ
TPI-Abuse
2026-03-29 17:36:04
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Mar 29 13:35:59.637239 2026] [security2:error] [pid 9054:tid 9054] [client 104.23.239.136:9303] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pentesters.in"] [uri "/.git/config"] [unique_id "acli_2xFmAf3kK_N0qsuKQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-03-29 09:42:04
(2 months ago)
[Sun Mar 29 11:42:03.007881 2026] [authz_core:error] [pid 4450] [client 104.23.239.136:11298] AH0163 ...
show more
[Sun Mar 29 11:42:03.007881 2026] [authz_core:error] [pid 4450] [client 104.23.239.136:11298] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Mar 29 11:42:03.821743 2026] [authz_core:error] [pid 4450] [client 104.23.239.136:11298] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sun Mar 29 11:42:03.934000 2026] [authz_core:error] [pid 4450] [client 104.23.239.136:11298] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 11:31:24
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Mar 27 07:31:20.522827 2026] [security2:error] [pid 7036:tid 7036] [client 104.23.239.136:11733] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.jrqdesign.com"] [uri "/.git/refs/heads/master"] [unique_id "acZqiHecvbOJu18pNh5wrAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Ba-Yu
2026-03-27 05:22:40
(2 months ago)
General hacking/exploits/scanning
Web Spam
Hacking
Brute-Force
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 02:41:22
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 22:41:13.193378 2026] [security2:error] [pid 28649:tid 28649] [client 104.23.239.136:11756] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.praedari.com"] [uri "/.git/index"] [unique_id "acXuSXGzzCppYwmgyIY2cQAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-27 00:28:30
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 20:28:22.335211 2026] [security2:error] [pid 20772:tid 20772] [client 104.23.239.136:13770] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.marilynmonroebook.com"] [uri "/.git/HEAD"] [unique_id "acXPJucUgK7_rgHx8uOTKQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-03-26 21:33:21
(2 months ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 18:19:09
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 14:19:01.748186 2026] [security2:error] [pid 3779:tid 3779] [client 104.23.239.136:11877] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.cosplayculture.com"] [uri "/.git/HEAD"] [unique_id "acV4lQU4TH6CR65amkaObgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-03-26 11:55:44
(2 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 08:28:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Mar 26 04:28:13.558040 2026] [security2:error] [pid 7265:tid 7265] [client 104.23.239.136:12987] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.abbysue.com"] [uri "/.git/index"] [unique_id "acTuHWm9x7lfvSGnh-dH5QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 03:07:40
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 23:07:36.339599 2026] [security2:error] [pid 9709:tid 9709] [client 104.23.239.136:12312] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.agrizel.com"] [uri "/.git/config"] [unique_id "acSi-H1WqceDI-T3BO1ITgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-26 01:34:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 21:34:21.800357 2026] [security2:error] [pid 11695:tid 11720] [client 104.23.239.136:12444] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.geoception.com"] [uri "/.git/config"] [unique_id "acSNHWb4boLL-sywR791BgAAAZE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-25 17:14:57
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.136 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Mar 25 13:14:49.080797 2026] [security2:error] [pid 22673:tid 22710] [client 104.23.239.136:12046] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.greaternorthmiamihistory.org"] [uri "/.git/logs/HEAD"] [unique_id "acQYCQrvZXYrb0CkUqv7ggAAAMc"]
show less
Brute-Force
Bad Web Bot
Web App Attack