Anonymous
2026-10-09 06:11:33
(11 hours ago)
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 9792 | TTL: 55 | LEN: 60 | TOS: 0x00 โข Re ...
show more
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 9792 | TTL: 55 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ง๐ช
madeit
2026-10-08 18:29:06
(23 hours ago)
Web App Attack
๐ซ๐ท
dynamix
2026-10-08 01:40:43
(1 day ago)
Multiple WAF Violations
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-10-05 18:28:45
(3 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
Anonymous
2026-09-29 15:55:23
(1 week ago)
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 9682 | TTL: 55 | LEN: 60 | TOS: 0x00 โข Re ...
show more
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 9682 | TTL: 55 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-23 16:24:08
(2 weeks ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ซ๐ท
dynamix
2026-09-15 12:53:44
(3 weeks ago)
Multiple WAF Violations
Web App Attack
๐ธ๐ฌ
securejdprop
2026-09-13 11:07:41
(3 weeks ago)
This IP was detected by CrowdSec triggering custom/vpatch-bad-cloudflare.
Hacking
๐ฉ๐ช
mravb
2026-08-13 08:41:16
(1 month ago)
104.22.24.134 - - [13/Aug/2026:11:41:15 +0300] "GET /.git/packed-refs HTTP/2.0" 404 170 "https://www ...
show more
104.22.24.134 - - [13/Aug/2026:11:41:15 +0300] "GET /.git/packed-refs HTTP/2.0" 404 170 "https://www.google.com/search?q=staging.michelbaakliny.com" "Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.6422.113 Mobile Safari/537.36"
...
show less
Web App Attack
Hacking
๐ง๐ช
madeit
2026-08-12 17:24:01
(1 month ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 19:54:58
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 15:54:51.955735 2026] [security2:error] [pid 2138843:tid 2138843] [client 104.22.24.134:11590] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "affourtit-bowmaker.com"] [uri "/.git/config"] [unique_id "amkJC9vGbR87MiRHdstI6wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-25 01:33:42
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 24 21:33:34.439775 2026] [security2:error] [pid 30310:tid 30331] [client 104.22.24.134:11518] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ip.kd9uri.com"] [uri "/.env.backup"] [unique_id "ajyFbuygBQyqLGesFzRTugAAAJM"], referer: https://www.google.com/search?q=www.ip.kd9uri.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-19 11:07:55
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 07:07:52.180103 2026] [security2:error] [pid 3271:tid 3271] [client 104.22.24.134:10388] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cheynans.com"] [uri "/.env.dist"] [unique_id "ajUjCHOgwBofvRcgBFYzQQAAAAU"], referer: https://www.google.com/search?q=cheynans.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 00:38:41
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 104.22.24.134 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 16 20:38:34.417801 2026] [security2:error] [pid 15102:tid 15102] [client 104.22.24.134:11976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.watsonstentsandevents.com"] [uri "/.env.local"] [unique_id "ajHsirbiJ3NG1BubHq4evwAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-06-15 22:00:45
(3 months ago)
Auto-ban: >3000 req/min op 2026-06-15
Web App Attack
SSH
Hacking