๐ฉ๐ช
NxtGenIT
2026-09-03 15:05:56
(1 hour ago)
CiscoASA Honeypot hit, Payload: "GET /+CSCOE+/logon.html?fcadbadd=1 HTTP/1.1" 200 -,
Brute-Force
๐ธ๐ช
OnTheEdge
2026-09-02 17:46:24
(22 hours ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
Anonymous
2026-02-11 09:01:00
(6 months ago)
SMS pumping
DDoS Attack
VPN IP
Bad Web Bot
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:00:56
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-12-29 09:16:46
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 04:16:39.963723 2025] [security2:error] [pid 1448095:tid 1448095] [client 104.207.49.106:56553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "loudenlow.com"] [uri "/.git/HEAD"] [unique_id "aVJG97h4uYVIHDcr_9aZTAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 08:53:58
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 03:53:50.835127 2025] [security2:error] [pid 25996:tid 25996] [client 104.207.49.106:29267] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cinesonline.com"] [uri "/.git/HEAD"] [unique_id "aVJBnnU6mDPWXK-RGUjy2gAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:59:16
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:59:10.038617 2025] [security2:error] [pid 24555:tid 24555] [client 104.207.49.106:12493] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "itsupitsdown.com"] [uri "/.svn/wc.db"] [unique_id "aVImvp_piLg_E2zVX8-VhgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:12:41
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:12:32.267410 2025] [security2:error] [pid 16791:tid 16791] [client 104.207.49.106:10313] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "daniellesinn.com"] [uri "/.git/HEAD"] [unique_id "aVIb0BltOrYNSHbkfs5nIQAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 03:43:17
(8 months ago)
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Dec 28 22:43:14.037531 2025] [security2:error] [pid 31669:tid 31669] [client 104.207.49.106:49191] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "anamericanabroad.com"] [uri "/.git/HEAD"] [unique_id "aVH40j5hpXPusc9OVJ5HXgAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
oncord
2025-11-17 15:27:22
(9 months ago)
Form spam
Web Spam
Anonymous
2025-04-07 13:35:34
(1 year ago)
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.04.07 is noted in report tim ...
show more
Attempted brute force login to web vpn 3 time(s); last attempt for 2025.04.07 is noted in report timestamp
show less
Hacking
Brute-Force
Anonymous
2025-04-06 10:24:18
(1 year ago)
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.04.06 is noted in report tim ...
show more
Attempted brute force login to web vpn 1 time(s); last attempt for 2025.04.06 is noted in report timestamp
show less
Hacking
Brute-Force
๐ฌ๐ง
Steve
2025-04-06 05:53:03
(1 year ago)
Excessive crawling - not obeying robots.txt
Bad Web Bot
Anonymous
2025-04-05 18:47:52
(1 year ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.04.05 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.04.05 is noted in report timestamp
show less
Hacking
Brute-Force
๐บ๐ธ
TPI-Abuse
2025-04-05 16:33:50
(1 year ago)
(mod_security) mod_security (id:225170) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 104.207.49.106 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 05 12:33:43.745418 2025] [security2:error] [pid 17692:tid 17692] [client 104.207.49.106:56251] [client 104.207.49.106] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||cactusstarvineyard.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "cactusstarvineyard.com"] [uri "/wp-json/wp/v2/users"] [unique_id "Z_FbZ2wv6saUWk25QsD_wAAAAB0"], referer: https://www.google.com
show less
Brute-Force
Bad Web Bot
Web App Attack