🇷🇺
Vicdedmak
2026-09-01 13:06:00
(6 days ago)
Port Scan
🇺🇸
BSG Webmaster
2026-08-23 07:00:02
(2 weeks ago)
Port scanning (Port 443)
Port Scan
Hacking
🇬🇧
OptimusGO
2026-08-22 18:56:42
(2 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-22 19:56:42 UTC
Log evidence:
08/22/2026-19:56:41.361181 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 135.119.236.49:53259 -> 185.127.18.66:2086
08/22/2026-19:56:41.370052 [**] [1:1000101:2] SECURITY Port Scan Detected - Multiple Unauthorized Ports [**] [Classification: Attempted Information Leak] [Priority: 1] {TCP} 135.119.236.49:53258 -> 185.127.18.66:2082
show less
Port Scan
Brute-Force
Anonymous
2026-08-02 12:29:04
(1 month ago)
denied traffic to a non-approved destination port. destination port 2077.
Port Scan
🇵🇱
Wepted
2026-07-26 03:46:12
(1 month ago)
Port scan detected by honeypot
Port Scan
Hacking
🇺🇸
TPI-Abuse
2026-06-15 03:52:03
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 135.119.236.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 135.119.236.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:51:59.855214 2026] [security2:error] [pid 13550:tid 13550] [client 135.119.236.49:47923] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.70"] [uri "/.git/HEAD"] [unique_id "ai92322kM9a4oqqvDP2EmwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
RAP
2026-06-15 03:48:17
(2 months ago)
2026-06-15 03:48:17 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan
Web App Attack
🇺🇸
TPI-Abuse
2026-06-15 03:17:39
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 135.119.236.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 135.119.236.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 23:17:34.591373 2026] [security2:error] [pid 12241:tid 12250] [client 135.119.236.49:48148] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.17"] [uri "/.git/HEAD"] [unique_id "ai9uzvI8ttHCQYBTBPQPjgAAAEc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
RAP
2026-06-15 02:41:27
(2 months ago)
2026-06-15 02:41:27 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan
Web App Attack
🇨🇿
Countryman
2026-06-15 02:31:06
(2 months ago)
IPS detection: Spring.Boot.Actuator.Unauthorized.Access
Hacking
🇧🇾
lns.bz
2026-06-15 02:25:07
(2 months ago)
Too many 404 requests [BY]
Web App Attack
🇩🇪
ghostwarriors
2026-06-15 02:20:04
(2 months ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
🇺🇸
xmission.com
2026-06-15 01:54:27
(2 months ago)
Blocked by UFW (TCP on 2087)
Source port: 48480
TTL: 48
Packet length: 60
TOS: 0x00
This report (fo ...
show more
Blocked by UFW (TCP on 2087)
Source port: 48480
TTL: 48
Packet length: 60
TOS: 0x00
This report (for 135.119.236.49) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇺🇸
TPI-Abuse
2026-06-15 01:45:20
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 135.119.236.49 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 135.119.236.49 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 14 21:45:16.276437 2026] [security2:error] [pid 22428:tid 22428] [client 135.119.236.49:49022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.193"] [uri "/.git/HEAD"] [unique_id "ai9ZLB1TTRzj7sicc94mcgAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
Axel
2026-06-15 01:40:42
(2 months ago)
Blocked by UFW on MVI [80/tcp] | SPT: 49022 | TTL: 49 | LEN: 60 | TOS: 0x00 • Reported by: github.co ...
show more
Blocked by UFW on MVI [80/tcp] | SPT: 49022 | TTL: 49 | LEN: 60 | TOS: 0x00 • Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan