๐ฎ๐ฉ
securejdprop
2026-10-05 19:18:26
(3 days ago)
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus D ...
show more
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET DROP Spamhaus DROP Listed Traffic Inbound group 67).
show less
Hacking
Web App Attack
๐จ๐ฆ
Kacelly Nima
2026-09-19 21:22:38
(2 weeks ago)
Bad Web Bot
Blog Spam
Brute-Force
DDoS Attack
DNS Compromise
DNS Poisoning
Email Spam
Exploited Host
Fraud Orders
Fraud VoIP
FTP Brute-Force
Hacking
IoT Targeted
Open Proxy
Phishing
Ping of Death
Port Scan
Spoofing
SQL Injection
SSH
VPN IP
Web App Attack
Web Spam
๐ซ๐ท
dynamix
2026-09-05 01:17:50
(1 month ago)
Multiple WAF Violations
Web App Attack
๐ฉ๐ช
LRob
2026-07-02 00:01:58
(3 months ago)
Repeated 403 errors, blocked by Fail2ban in custom-403 jail
Bad Web Bot
๐บ๐ธ
myagent.site
2026-02-13 03:18:09
(7 months ago)
Blocking for trying to access an exploit file: /dev/.git/config
Hacking
๐ฉ๐ช
Carsten
2026-02-13 00:51:17
(7 months ago)
GET [config/.env]
Port Scan
๐บ๐ธ
jcbriar
2026-02-12 17:33:45
(7 months ago)
Searching for vulnerable scripts
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-21 10:34:14
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jan 21 05:34:10.533432 2026] [security2:error] [pid 28128:tid 28128] [client 216.26.242.104:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thectegroup.net"] [uri "/.git/HEAD"] [unique_id "aXCroqJJ6uoZfbhAAc3QOQAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
myagent.site
2026-01-20 21:44:25
(8 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐บ๐ธ
TPI-Abuse
2026-01-20 20:21:52
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jan 20 15:21:44.193828 2026] [security2:error] [pid 17467:tid 17467] [client 216.26.242.104:13967] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "tek-front.com"] [uri "/.svn/wc.db"] [unique_id "aW_j2IqKcHEmKybyGfcaygAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Shaik Sai Meera
2026-01-20 19:05:10
(8 months ago)
IM360 WAF: Hidden file access
Brute-Force
๐ณ๐ฑ
jjnxpct
2026-01-03 04:48:00
(9 months ago)
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting UR ...
show more
Automated security incident from hosting server. ModSecurity blocked suspicious request targeting URI: /.git/HEAD (Rule ID: 930130) - Restricted File Access Attempt [Suspicious: .git/ found within REQUEST_FILENAME: /.git/HEAD]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:29:38
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:29:32.077524 2025] [security2:error] [pid 23644:tid 23644] [client 216.26.242.104:58419] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "teknna.com"] [uri "/.svn/wc.db"] [unique_id "aVIRvGY1uHDhllGQGuVKCAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:02:24
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.242.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:02:17.148205 2025] [security2:error] [pid 20965:tid 20965] [client 216.26.242.104:46093] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sidkha.com"] [uri "/.env"] [unique_id "aVH9SeRzVyNB4bpywPtK0gAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack