🇺🇸
mnsf
2026-09-06 00:05:56
(16 hours ago)
Scanning/Probing (24)
Brute-Force
Web App Attack
🇫🇷
dynamix
2026-09-05 23:14:28
(16 hours ago)
Multiple WAF Violations
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 22:12:33
(17 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.148.30.4 (4.30.148.146.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.30.4 (4.30.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 18:12:28.778733 2026] [security2:error] [pid 18916:tid 18916] [client 146.148.30.4:39540] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hughhart.com"] [uri "/src/.git/config"] [unique_id "apyTzMh4bZaYjikB0R-mfgAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇮🇹
Inartis
2026-09-05 21:46:59
(18 hours ago)
146.148.30.4 - - [05/Sep/2026:23:46:58 +0200] "GET /.git/config HTTP/1.1" 404 403 "-" "crusader-work ...
show more
146.148.30.4 - - [05/Sep/2026:23:46:58 +0200] "GET /.git/config HTTP/1.1" 404 403 "-" "crusader-worker/1.0"
146.148.30.4 - - [05/Sep/2026:23:46:58 +0200] "GET /.git/config HTTP/1.1" 302 447 "-" "crusader-worker/1.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
🇩🇪
Vegascosmetics
2026-09-05 21:35:25
(18 hours ago)
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possi ...
show more
Kingcopy.org AI-IDS (Vegas Cosmetics shop): auto-blocked after PHP/CMS/webshell exploit probe (possible exploited host). Evidence: AttackPattern: /wordpress/ (Match: /wordpress/)
show less
Hacking
Exploited Host
Web App Attack
🇺🇸
TPI-Abuse
2026-09-05 21:31:32
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.148.30.4 (4.30.148.146.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.30.4 (4.30.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:31:26.718565 2026] [security2:error] [pid 11729:tid 11738] [client 146.148.30.4:43650] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "royalmanagementsociety.com"] [uri "/wordpress/.git/config"] [unique_id "apyKLidCOveZ2ZzsmBkXfwAAAUE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-05 21:06:54
(19 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇺🇸
TPI-Abuse
2026-09-05 21:03:36
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 146.148.30.4 (4.30.148.146.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.30.4 (4.30.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 05 17:03:31.558538 2026] [security2:error] [pid 22046:tid 22063] [client 146.148.30.4:54702] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.michaelmercier.com"] [uri "/html/.git/config"] [unique_id "apyDo2jU7nGdeZkaUZXw6wAAAMM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
LSPCCU
2026-09-05 18:48:17
(21 hours ago)
TSEC Honeypot Network report. Threat score: 70/100. Categories: Hacking. Honeypot: galah. Context: 1 ...
show more
TSEC Honeypot Network report. Threat score: 70/100. Categories: Hacking. Honeypot: galah. Context: 146.148.30.4 classified as botnet node participating in coordinated attack campaigns (high confidence).
show less
Hacking
Anonymous
2026-09-05 13:50:11
(1 day ago)
Blocked by firewall on hugin [11434/tcp] | Rule: UFW | SPT: 37260 | TTL: 58 | LEN: 60 | TOS: 0x00 • ...
show more
Blocked by firewall on hugin [11434/tcp] | Rule: UFW | SPT: 37260 | TTL: 58 | LEN: 60 | TOS: 0x00 • Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
🇩🇪
kkwemi
2026-09-05 09:02:55
(1 day ago)
Blocked by block-exploit-paths on /Admin/phpinfo.php
Bad Web Bot