๐บ๐ธ
LSPCCU
2026-06-03 22:24:56
(4 days ago)
TSEC Honeypot Network report. Threat score: 65/100. Categories: Hacking, Brute-Force, Web App Attack ...
show more
TSEC Honeypot Network report. Threat score: 65/100. Categories: Hacking, Brute-Force, Web App Attack, SSH. Honeypot: ssh-telnet, cowrie. Context: 104.
show less
Hacking
Brute-Force
Web App Attack
SSH
๐ฏ๐ต
beon
2026-05-19 23:16:45
(2 weeks ago)
[DateTime=>2026-05-19T23:16:45Z to 2026-05-19T23:16:46Z (UTC)] , [404targets=>/ajax.googleapis.com/a ...
show more
[DateTime=>2026-05-19T23:16:45Z to 2026-05-19T23:16:46Z (UTC)] , [404targets=>/ajax.googleapis.com/ajax/libs/jquery/2.1.4/jquery.min.js, /umd/react-dom.development.js] , [total_Hits=>twice]
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-13 11:12:28
(3 weeks ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 13 07:12:23.046261 2026] [security2:error] [pid 20827:tid 20827] [client 104.207.42.57:62319] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "solutiongroove.com"] [uri "/.svn/wc.db"] [unique_id "agRcl0n5dsJ-EfYTanqD5QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
SkyDancer
2026-05-13 11:09:29
(3 weeks ago)
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show more
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
Hacking
Brute-Force
SSH
๐ณ๐ฑ
wlt-blocker
2026-05-11 22:14:59
(3 weeks ago)
Unauthorized access to webpage admin
Web App Attack
๐ฑ๐ป
garmtech.com
2026-05-04 09:30:00
(1 month ago)
Attempted access to sensitive endpoint (/.env) detected. Automated scan or unauthorized probing.
Web App Attack
๐บ๐ธ
omc
2026-04-30 16:59:10
(1 month ago)
Blacklisted client denied access [PP]
Bad Web Bot
๐ฌ๐ง
Axel
2026-04-30 01:33:42
(1 month ago)
Blocked by ModSecurity. Rule ID: 210730 Message: COMODO WAF: URL file extension is restricted by pol ...
show more
Blocked by ModSecurity. Rule ID: 210730 Message: COMODO WAF: URL file extension is restricted by policy||checkip.api.iii.vg|F|2 Phase: 2 Severity: CRITICAL URI: /s3cmd.ini Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐ณ๐ฑ
homeshowdomain.nl
2026-04-29 22:17:17
(1 month ago)
Auto-ban: >3000 req/min op 2026-04-29
Web App Attack
SSH
Hacking
๐ช๐ธ
Serpes
2026-03-31 22:43:39
(2 months ago)
Suspicious activity detected
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:11:27
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:11:24.555346 2025] [security2:error] [pid 24535:tid 24535] [client 104.207.42.57:13909] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "yacht-register-holland.com"] [uri "/.git/HEAD"] [unique_id "aVINfMXAz94bUK5x7F4xhQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:42:01
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:41:53.618424 2025] [security2:error] [pid 25306:tid 25306] [client 104.207.42.57:13793] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "makegoodsausage.com"] [uri "/.svn/wc.db"] [unique_id "aVIGkVYkGUwoPuJ3gYx7hgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 04:04:47
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 23:04:43.965370 2025] [security2:error] [pid 14012:tid 14012] [client 104.207.42.57:16363] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alexsource.com"] [uri "/.svn/wc.db"] [unique_id "aVH92_3zy83o1xn0jnzQSgAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 03:27:08
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.42.57 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 22:27:00.972905 2025] [security2:error] [pid 17690:tid 17706] [client 104.207.42.57:42639] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "myrasnyder.com"] [uri "/.env"] [unique_id "aVH1BAn5DxCYi8l58KTaxwAAAM4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-14 19:46:55
(5 months ago)
botnet
DDoS Attack