๐ฉ๐ช
iNetWorker
2026-06-06 19:39:52
(10 hours ago)
trolling for resource vulnerabilities
Web App Attack
๐ซ๐ฎ
inlink.ltd
2026-06-06 19:05:21
(11 hours ago)
dot file probe
Web App Attack
๐ซ๐ท
cityhunter_rhone
2026-06-06 12:06:07
(18 hours ago)
Fail2Ban offender in jail [recidive] โ 2 total attempts โ tracked by mercurius-guide.com security sy ...
show more
Fail2Ban offender in jail [recidive] โ 2 total attempts โ tracked by mercurius-guide.com security system.
show less
SSH
Brute-Force
๐จ๐ญ
backslash
2026-05-23 05:00:19
(2 weeks ago)
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-02-10 05:44:05
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 00:43:58.709300 2026] [security2:error] [pid 7069:tid 7069] [client 104.207.41.95:42649] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kochcreative.com"] [uri "/backup/.git/config"] [unique_id "aYrFnqfHlswhMW-U_RTt2gAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 05:11:46
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Feb 10 00:11:40.616893 2026] [security2:error] [pid 31094:tid 31109] [client 104.207.41.95:41033] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "idwic.com"] [uri "/.env"] [unique_id "aYq-DO9YRKhmU5Oqp0pb-QAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:59:16
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:59:05.256285 2026] [security2:error] [pid 12745:tid 12764] [client 104.207.41.95:20271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kiwimagic.net"] [uri "/site/.git/config"] [unique_id "aYqtBizFaBOFmlrgLfF7kgAAAJA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-10 03:15:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 22:14:52.051050 2026] [security2:error] [pid 19421:tid 19421] [client 104.207.41.95:38413] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "iahksa.com"] [uri "/.env.save"] [unique_id "aYqirBG2fqXp-l0AJkJRhAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-09 22:59:19
(3 months ago)
Auto-ban: >3000 req/min op 2026-02-09
Hacking
Web App Attack
SSH
๐บ๐ธ
TPI-Abuse
2026-02-09 22:33:10
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 17:33:06.422276 2026] [security2:error] [pid 9553:tid 9553] [client 104.207.41.95:30277] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kayelynn.com"] [uri "/api/.git/config"] [unique_id "aYpgoil3sMI7GpYwia7rZgAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-02-09 22:31:56
(3 months ago)
Blocking for trying to access an exploit file: /backup/.git/config
Hacking
๐บ๐ธ
TPI-Abuse
2026-02-09 21:59:19
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Feb 09 16:59:09.845472 2026] [security2:error] [pid 27066:tid 27066] [client 104.207.41.95:27223] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "katemcleod.net"] [uri "/dev/.git/config"] [unique_id "aYpYrRccP35l3Vw3VKRvXQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-27 19:11:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.41.95 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 27 14:11:46.056266 2025] [security2:error] [pid 11291:tid 11291] [client 104.207.41.95:36261] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "allotrope.com"] [uri "/.git/HEAD"] [unique_id "aSiicpdUQPUvnMLNQYOlQgAAACg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
10dencehispahard SL
2025-11-19 07:01:49
(6 months ago)
WP probing for vulnerabilities
Hacking
Exploited Host
Anonymous
2025-11-13 22:40:36
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack