🇬🇧
andypiper
2026-09-04 01:01:21
(6 hours ago)
CrowdSec ban for AbuseIPDB Top List
Brute-Force
Web App Attack
🇫🇷
Octopuce
2026-09-04 00:14:13
(7 hours ago)
Aggressive web search of vulnerable pages: /backup.sql.gz /phpinfo.php /dump.sql /backup.zip /backup ...
show more
Aggressive web search of vulnerable pages: /backup.sql.gz /phpinfo.php /dump.sql /backup.zip /backup.sql ...
show less
Web App Attack
🇺🇸
Thermogenic
2026-09-03 23:08:08
(8 hours ago)
Fail2Ban nginx-scanners: automated vulnerability scanning detected
Web App Attack
🇳🇱
homeshowdomain.nl
2026-09-03 22:01:10
(9 hours ago)
Auto-ban: >3000 req/min op 2026-09-03
Web App Attack
SSH
Hacking
Anonymous
2026-09-03 21:27:50
(9 hours ago)
[server.tmg.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/pathscan-1ab3dd6daa52-no ...
show more
[server.tmg.gr] httpd-config-scan: logs=/var/log/httpd/access_log; samples=/pathscan-1ab3dd6daa52-nope.env | /.hg/store/00manifest.i | /wp-config.php.bak
show less
Hacking
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 18:27:29
(12 hours ago)
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdim ...
show more
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdime.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 14:27:22.119516 2026] [security2:error] [pid 31044:tid 31044] [client 177.234.147.179:42708] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "taptaptennis.abecasis.com"] [uri "/.hg/store/00manifest.i"] [unique_id "apm8CrmGQz9ZJhpjXQ_jPgAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇦🇺
screwlooseit.com.au
2026-09-03 18:06:12
(13 hours ago)
Blocked by CSF 13 firewall - Rule: BR/Brazil/177-234-147-179.static.hostdime.com
Web App Attack
🇬🇧
consul.to
2026-09-03 16:07:40
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 14:07:19
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdim ...
show more
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdime.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 10:07:14.574531 2026] [security2:error] [pid 17355:tid 17355] [client 177.234.147.179:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.swarnar.com"] [uri "/.hg/store/00manifest.i"] [unique_id "apl_EuYiw_Q68TosEW8KyQAAAAQ"], referer: http://cpcalendars.swarnar.com/.hg/store/00manifest.i
show less
Brute-Force
Bad Web Bot
Web App Attack
🇳🇱
WeCloudit-Anti-Abuse
2026-09-03 13:23:51
(18 hours ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
Web App Attack
Hacking
🇫🇷
Catalin Negru
2026-09-03 12:55:40
(18 hours ago)
Recidive ban by fail2ban on server.blackbit.ro
Brute-Force
🇺🇸
TPI-Abuse
2026-09-03 10:09:38
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdim ...
show more
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdime.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 06:09:32.827189 2026] [security2:error] [pid 10501:tid 10501] [client 177.234.147.179:36688] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tandm.us"] [uri "/.hg/store/00manifest.i"] [unique_id "aplHXMhKp4r9L8OixM4HjwAAAI4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
Celtic
2026-09-03 09:13:21
(22 hours ago)
Blocked by Fail2Ban with Jail (plesk-modsecurity)
Brute-Force
SSH
🇺🇸
mnsf
2026-09-03 09:05:15
(22 hours ago)
Scanning/Probing (15)
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-09-03 08:50:14
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdim ...
show more
(mod_security) mod_security (id:210492) triggered by 177.234.147.179 (177-234-147-179.static.hostdime.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 03 04:50:09.312213 2026] [security2:error] [pid 19839:tid 19839] [client 177.234.147.179:37206] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.hg/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.carlosmol.com"] [uri "/.hg/store/00manifest.i"] [unique_id "apk0wZ8AOQWc68fFyIYXjgAAAJU"]
show less
Brute-Force
Bad Web Bot
Web App Attack