๐ฉ๐ช
Hugopvigo
2026-07-20 14:23:29
(1 day ago)
104.167.19.111 - - [20/Jul/2026:16:23:28 +0200] "GET /.git/./config HTTP/1.1" 403 7861 "-" "Mozilla/ ...
show more
104.167.19.111 - - [20/Jul/2026:16:23:28 +0200] "GET /.git/./config HTTP/1.1" 403 7861 "-" "Mozilla/5.0 (Maemo; Linux armv7l; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Fennec/2.0.1"
...
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ธ๐ช
EmK530
2026-07-20 12:25:34
(1 day ago)
URL flagged by RegEx: /.git/./config
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 11:19:43
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 07:19:38.986811 2026] [security2:error] [pid 21873:tid 21873] [client 104.167.19.111:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "easy-byte.net"] [uri "/.git/./config"] [unique_id "al4ESogwHlHUpGptKAGjpgAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-07-20 10:23:20
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 104.167.19.111 (US/United States/-): N in the l ...
show more
(mod_security) mod_security (id:949110) triggered by 104.167.19.111 (US/United States/-): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-20 09:59:39
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 104.167.19.111 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.167.19.111 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 20 05:59:34.066235 2026] [security2:error] [pid 30623:tid 30719] [client 104.167.19.111:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "earthtravel.net"] [uri "/.git/./config"] [unique_id "al3xhrJ51zAdvsZs0NzPHQAAAcc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-07-20 05:23:24
(1 day ago)
[Mon Jul 20 15:23:23.588117 2026] [security2:error] [pid 71358] [client 104.167.19.111:37905] [clien ...
show more
[Mon Jul 20 15:23:23.588117 2026] [security2:error] [pid 71358] [client 104.167.19.111:37905] [client 104.167.19.111] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "dance4fitness.com.au"] [uri "/.git/config"] [unique_id "al2wy4TJAz6nrnFLo1Oo-AAAABQ"]
...
show less
Web App Attack
Anonymous
2026-07-20 04:30:14
(1 day ago)
Web Server Exposed Git Repository Information Disclosure.
Hacking
๐ฌ๐ง
Smish
2026-07-20 02:41:09
(1 day ago)
HONEYPOT HIT --> Fail2ban time=1784515268 log=2026-07-20T03:41:08+01:00 ip=104.167.19.111 host=dal-u ...
show more
HONEYPOT HIT --> Fail2ban time=1784515268 log=2026-07-20T03:41:08+01:00 ip=104.167.19.111 host=dal-ult-01-game.bya.ac method=GET uri="/.git/./config" status=404 ua="Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.99 Safari/537.36" ref="-" rid=8a76c46d68795eb7fb4c3d4a787516e9
show less
Web App Attack
๐ฆ๐บ
aglenday
2026-05-13 04:48:18
(2 months ago)
Honeypot hit: MSSQL traffic (on 1433) without login credentials
Port Scan
๐บ๐ธ
LSPCCU
2026-05-11 01:18:05
(2 months ago)
TSEC Honeypot Network report. Threat score: 77/100. Categories: Hacking. Honeypot: ssh-telnet, cowri ...
show more
TSEC Honeypot Network report. Threat score: 77/100. Categories: Hacking. Honeypot: ssh-telnet, cowrie. Context: 104.
show less
Hacking
๐ฆ๐บ
MAGIC
2026-01-26 00:12:00
(5 months ago)
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack
Bad Web Bot
๐ฌ๐ง
Swiptly
2025-12-29 01:57:51
(6 months ago)
Bot scanning for environment files .env .env/\*
...
Web App Attack
Anonymous
2025-12-04 02:37:04
(7 months ago)
botnet
DDoS Attack
Anonymous
2025-11-14 11:14:13
(8 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
๐ฌ๐ง
catalink.com
2025-11-12 18:22:09
(8 months ago)
Brute forcing Wordpress login
Exploited Host
Web App Attack