๐บ๐ธ
MPL
2026-02-25 21:34:03
(5 months ago)
tcp/443 (24 or more attempts)
Port Scan
๐ฌ๐ง
seniorlinuxadmin
2026-02-25 21:29:19
(5 months ago)
145.239.84.133 - - [25/Feb/2026:21:29:17 +0000] "GET / HTTP/1.1" 403 158 "-" "{USER_AGENT}"
Port Scan
Web App Attack
๐ซ๐ฎ
Jordy
2026-02-25 11:12:05
(5 months ago)
25/Feb/2026:12:07:19.933780 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
25/Feb/2026:12:07:19.933780 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 145.239.84.133] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1128"] [id "920450"] [msg "HTTP header is restricted by policy (/accept-charset/)"] [data "Restricted header detected: /accept-charset/"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/12.1"] [hostname "familievandemaat.nl"] [uri "/"] [unique_id "aZ7X5xsaKQLqlK88226i3wAAAAk"]
25/Feb/2026:12:07:19.933780 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 145.239.84.133] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/
...
show less
Web App Attack
๐ซ๐ท
Flo Flo
2026-02-25 06:18:31
(5 months ago)
145.239.84.133 - - - [25/Feb/2026:07:18:31 +0100] "flad.xyz" "GET / HTTP/1.1" 444 0 "-" "{USER_AGENT ...
show more
145.239.84.133 - - - [25/Feb/2026:07:18:31 +0100] "flad.xyz" "GET / HTTP/1.1" 444 0 "-" "{USER_AGENT}" 0.000
...
show less
Web App Attack
๐ฌ๐ง
poundawebsiteltd
2026-02-22 08:38:07
(6 months ago)
Web App Attack (ModSecurity Block). Evidence: [REDACTED_DOMAIN]:443 145.239.84.133 - - [22/Feb/2026: ...
show more
Web App Attack (ModSecurity Block). Evidence: [REDACTED_DOMAIN]:443 145.239.84.133 - - [22/Feb/2026:08:38:05 +0000] GET / HTTP/1.1 403 2913 - {USER_AGENT}
show less
Web App Attack
๐บ๐ธ
Charlesiv
2026-02-21 19:02:23
(6 months ago)
Triggered Cloudflare WAF (firewallCustom) from PL.
Action taken: BLOCK
ASN: 16276 (OVH)
Protocol: HT ...
show more
Triggered Cloudflare WAF (firewallCustom) from PL.
Action taken: BLOCK
ASN: 16276 (OVH)
Protocol: HTTP/1.1 (GET method)
Endpoint: /
Timestamp: 2026-02-21T18:18:03Z
Ray ID: 9d183e7ade87eec1
UA: {USER_AGENT}
show less
Bad Web Bot
Anonymous
2026-02-21 10:25:03
(6 months ago)
IP banned by Fail2Ban in jail nginx-abusive-ips
Web App Attack
Brute-Force
Bad Web Bot
๐ซ๐ฎ
Jordy
2026-02-21 06:35:11
(6 months ago)
21/Feb/2026:07:30:50.242513 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
21/Feb/2026:07:30:50.242513 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 145.239.84.133] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1128"] [id "920450"] [msg "HTTP header is restricted by policy (/accept-charset/)"] [data "Restricted header detected: /accept-charset/"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/12.1"] [hostname "familievandemaat.nl"] [uri "/"] [unique_id "aZlRGlyC1clQj3Lm5ViGNgAAAAk"]
21/Feb/2026:07:30:50.242513 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 145.239.84.133] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/
...
show less
Web App Attack
๐ซ๐ฎ
Jordy
2026-02-20 19:29:54
(6 months ago)
20/Feb/2026:20:25:36.469213 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client ...
show more
20/Feb/2026:20:25:36.469213 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 145.239.84.133] ModSecurity: Warning. String match within "/accept-charset/ /content-encoding/ /proxy/ /lock-token/ /content-range/ /if/" at TX:header_name_accept-charset. [file "/usr/share/modsecurity-crs/rules/REQUEST-920-PROTOCOL-ENFORCEMENT.conf"] [line "1128"] [id "920450"] [msg "HTTP header is restricted by policy (/accept-charset/)"] [data "Restricted header detected: /accept-charset/"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-protocol"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/210/272"] [tag "PCI/12.1"] [hostname "familievandemaat.nl"] [uri "/"] [unique_id "aZi1MHOXImVwIsruOylxOgAAAAk"]
20/Feb/2026:20:25:36.469213 +0100Apache-Error: [file "apache2_util.c"] [line 275] [level 3] [client 145.239.84.133] ModSecurity: Warning. Operator GE matched 5 at TX:anomaly_score. [file "/
...
show less
Web App Attack
๐ซ๐ท
All2gether
2026-02-19 06:58:16
(6 months ago)
Web App Attack
๐บ๐ธ
technash
2026-02-19 06:29:00
(6 months ago)
Blocked unauthorized network connection attempts (TCP ports). [Fortinet/Sentinel]
Brute-Force
Anonymous
2026-02-19 03:55:13
(6 months ago)
Automatic report from firewall log
Port Scan
Hacking
Web App Attack
๐ฉ๐ช
barbarella
2026-02-18 06:39:00
(6 months ago)
Illegal http header (GET /)
Hacking
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-02-17 23:13:57
(6 months ago)
Auto-ban: >3000 req/min op 2026-02-17
Web App Attack
SSH
Hacking
๐ต๐ฑ
ketovoila.pl
2026-02-17 23:13:22
(6 months ago)
ketovoila.pl HONEYPOT traffic: count=1, paths=1; sample_path=ketovoila.pl/; UA={USER_AGENT}; window= ...
show more
ketovoila.pl HONEYPOT traffic: count=1, paths=1; sample_path=ketovoila.pl/; UA={USER_AGENT}; window=2026-02-17T01:44:20Z..2026-02-17T01:44:20Z
show less
Port Scan
Hacking
Brute-Force