This IP address has been reported a total of
29
times from
23 distinct
sources.
192.81.212.93 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210492) triggered by 192.81.212.93 (-): 1 in the last 300 secs; Port ...
show more(mod_security) mod_security (id:210492) triggered by 192.81.212.93 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 12 06:13:46.262338 2026] [security2:error] [pid 3134:tid 3134] [client 192.81.212.93:54414] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "learningbyshipping.com"] [uri "/.git/HEAD"] [unique_id "aivb2sCztL_JuZs1H48zNgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Automated vulnerability scanning and sensitive file probing against a secured web server. Attempted ...
show moreAutomated vulnerability scanning and sensitive file probing against a secured web server. Attempted access to sensitive configuration files and common vulnerability paths.
show less
[SunJun0720:17:37.9028932026][security2:error][pid141807:tid142719][client192.81.212.93:0]ModSecurit ...
show more[SunJun0720:17:37.9028932026][security2:error][pid141807:tid142719][client192.81.212.93:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"hostingedominio.com\"][uri\"/.git/HEAD\"][unique_id\"aiW1waW3-lJjB95ZXENV3wAAARg\"]
show less
Multiple web server 400 error codes from same source ip.
192.81.212.93 - - [17/May/2026:08:47:34 +02 ...
show moreMultiple web server 400 error codes from same source ip.
192.81.212.93 - - [17/May/2026:08:47:34 +0200] "GET /find-a-store HTTP/1.1" 400 230 "-" "Mozilla/5.0 (compatible; security-research)"
show less
Mar 10 12:26:21 nosvoid sshd[657703]: Failed password for root from 192.81.212.93 port 41414 ssh2
Ma ...
show moreMar 10 12:26:21 nosvoid sshd[657703]: Failed password for root from 192.81.212.93 port 41414 ssh2
Mar 10 12:27:53 nosvoid sshd[660577]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.81.212.93 user=root
Mar 10 12:27:55 nosvoid sshd[660577]: Failed password for root from 192.81.212.93 port 40230 ssh2
Mar 10 12:29:25 nosvoid sshd[663374]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.81.212.93 user=root
Mar 10 12:29:27 nosvoid sshd[663374]: Failed password for root from 192.81.212.93 port 44760 ssh2
...
show less
Mar 10 13:26:08 unifi sshd[289435]: Failed password for root from 192.81.212.93 port 52118 ssh2
Mar ...
show moreMar 10 13:26:08 unifi sshd[289435]: Failed password for root from 192.81.212.93 port 52118 ssh2
Mar 10 13:27:39 unifi sshd[289456]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.81.212.93 user=root
Mar 10 13:27:41 unifi sshd[289456]: Failed password for root from 192.81.212.93 port 43504 ssh2
Mar 10 13:29:11 unifi sshd[289496]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.81.212.93 user=root
Mar 10 13:29:13 unifi sshd[289496]: Failed password for root from 192.81.212.93 port 57442 ssh2
...
show less