๐ฆ๐ฑ
router.al
2026-06-16 07:18:10
(21 hours ago)
06/16/2026-07:18:10.394563 104.23.239.41 Protocol: 6 ET SCAN LeakIX Inbound User-Agent
Hacking
๐ท๐บ
DZBOT
2026-06-15 19:05:43
(1 day ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-06-15 15:08:08
(1 day ago)
Trying to access config files
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-14 12:43:03
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 08:42:55.881864 2026] [security2:error] [pid 7186:tid 7186] [client 104.23.239.41:9582] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrobertdesignbuild.com.globalsolutions.technology"] [uri "/.git/config"] [unique_id "ai6hz05e0Hr8FhEX78B4HQAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-14 08:06:09
(2 days ago)
Trying to access config files
Web App Attack
๐บ๐ธ
mawan
2026-06-14 02:08:49
(3 days ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐จ๐ญ
4server
2026-06-07 08:28:52
(1 week ago)
[SunJun0710:28:45.6803342026][security2:error][pid2283605:tid2283876][client104.23.239.41:0]ModSecur ...
show more
[SunJun0710:28:45.6803342026][security2:error][pid2283605:tid2283876][client104.23.239.41:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"whatsdecor.ch\"][uri\"/.git/config\"][unique_id\"aiUrvWZ3ny1Pa8BNyxE0XAAAAQ4\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 06:36:30
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 02:36:24.128507 2026] [security2:error] [pid 31020:tid 31020] [client 104.23.239.41:12209] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "treadbox.net"] [uri "/.git/config"] [unique_id "aiEc6JdZXavgcYNdB4qEjQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-04 05:59:08
(1 week ago)
Automated report (2026-06-04T13:59:08+08:00). Caught probing for exposed Git data.
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 16:45:40
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 12:45:32.132956 2026] [security2:error] [pid 1096:tid 1096] [client 104.23.239.41:10944] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pamplonaserviciotecnico.com"] [uri "/.git/config"] [unique_id "ah8IrH-99PydqWcONNsClgAAADA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 12:55:27
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 08:55:22.806994 2026] [security2:error] [pid 28512:tid 28519] [client 104.23.239.41:10306] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ingeconsultcr.com"] [uri "/.git/config"] [unique_id "ah7SurmuCJX7_oOZjIo1WwAAAUQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 10:05:45
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 09:53:03
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 05:52:56.349695 2026] [security2:error] [pid 20839:tid 20839] [client 104.23.239.41:11359] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "boat-registration-hong-kong.com"] [uri "/.git/config"] [unique_id "ah6n-FO-hYTxxX0PSe0bMwAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 04:56:53
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 00:56:49.049456 2026] [security2:error] [pid 14733:tid 14755] [client 104.23.239.41:14031] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "getairborne.com"] [uri "/.git/config"] [unique_id "ah5ikQxWaqsNOZQSnQlTmwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 15:36:50
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.23.239.41 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 11:36:44.303404 2026] [security2:error] [pid 24925:tid 24925] [client 104.23.239.41:12299] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.softwarezz.net"] [uri "/.git/config"] [unique_id "ahxVjFiwJkEgLmjFIuGvpQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack