π¨π
π¨π Hosting
2026-10-03 05:10:15
(3 days ago)
Automated WAF report: 150-175 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
π³π±
homeshowdomain.nl
2026-10-02 21:59:46
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-10-01.
show less
Web App Attack
SSH
Hacking
πͺπΈ
robotstxt
2026-10-02 05:45:53
(4 days ago)
146.148.4.7 - - [02/Oct/2026:05:44:57 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 35752 "https:// ...
show more
146.148.4.7 - - [02/Oct/2026:05:44:57 +0000] "GET /.vite/manifest.json HTTP/2.0" 403 35752 "https://noudiari.es/.vite/manifest.json" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0" "-" edge="146.148.4.7"
146.148.4.7 - - [02/Oct/2026:05:44:58 +0000] "GET /.ssh/config HTTP/2.0" 403 37426 "https://noudiari.es/.ssh/config" "Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot)" "-" edge="146.148.4.7"
146.148.4.7 - - [02/Oct/2026:05:44:58 +0000] "GET /.ssh/id_ed25519 HTTP/2.0" 403 37437 "https://noudiari.es/.ssh/id_ed25519" "Mozilla/5.0 (compatible; PanguBot/1.0; +https://www.huaweicloud.com/)" "-" edge="146.148.4.7"
146.148.4.7 - - [02/Oct/2026:05:44:58 +0000] "GET /@fs/app/.env?raw?? HTTP/2.0" 403 20 "https://noudiari.es/@fs/app/.env?raw??" "Mozilla/5.0 (compatible; ChatGLM-Spider/1.0; +https://zhipuai.cn/)" "-" edge="146.148.4.7"
146.148.4.7 - - [02/Oct/2026:05:44:59 +0000]
...
show less
Web App Attack
π©πͺ
LRob
2026-10-02 05:39:53
(4 days ago)
Wordlist path sweep | method: POST, GET | path: /icecoder/lib/terminal-xhr.php, /dist/manifest.json, ...
show more
Wordlist path sweep | method: POST, GET | path: /icecoder/lib/terminal-xhr.php, /dist/manifest.json, /static/manifest.json (+3 more) | ua: Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/), Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/152.0.0.0 Safari/537.36 Edg/152.0.0.0, Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; PerplexityBot/1.0; +https://perplexity.ai/perplexitybot) (+1 more)
show less
Port Scan
Web App Attack
π΅π±
Budyn
2026-10-02 05:16:11
(4 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: app.budyn.ovh | URI: /.vite/manifest.json | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
π¨π
π¨π Hosting
2026-10-02 05:10:15
(4 days ago)
Automated WAF report: 200-300 blocked requests from this IP detected by our WAF.
Bad Web Bot
Web App Attack
π§πͺ
cmbplf
2026-10-02 01:03:25
(4 days ago)
2.940 requests from abuseipdb.com blacklisted IP (1yr2w6d)
Brute-Force
Bad Web Bot
π¬π§
consul.to
2026-10-01 19:44:44
(4 days ago)
Web attack/malicious scanning detected
Web App Attack
π³π±
i-turnradio.nl
2026-10-01 19:33:16
(4 days ago)
2026-10-01 @ 21:33:09 (CET) ~ Blocked for trying to access: /lib/terminal-xhr.php
Web App Attack
π©πͺ
sternwart
2026-10-01 17:43:37
(4 days ago)
Automatisch erkannt: Zugriff auf /.env.js (my-coach.ch)
Web App Attack
Bad Web Bot
π«π·
masterguru
2026-10-01 17:40:30
(4 days ago)
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encod ...
show more
HTTP header is restricted by policy (/x-middleware-subrequest/). String match within "/content-encoding/ /proxy/ /lock-token/ /content-range/ /if/ /x-http-method-override/ /x-http-method/ /x-method-override/ /x-middleware-subrequest/ /expect/" at TX:header_name_920450_x-middleware-subrequest. (920450-197)
show less
Bad Web Bot
π©πͺ
updown.io
2026-10-01 16:51:15
(5 days ago)
{"level":"info","ts":1790873474.6122088,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1790873474.6122088,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"146.148.4.7","remote_port":"37116","client_ip":"146.148.4.7","proto":"HTTP/2.0","method":"POST","host":"status.savagepowerboats.com","uri":"/api/graphql","headers":{"Accept-Encoding":["gzip, deflate, br, zstd"],"Sec-Ch-Ua-Mobile":["?1"],"Priority":["u=1, i"],"Sec-Ch-Ua-Platform":["\"Android\""],"Cookie":["REDACTED"],"Accept-Language":["en-US,en;q=0.9"],"Sec-Fetch-Dest":["empty"],"Sec-Fetch-Mode":["cors"],"Sec-Ch-Ua":["\"Chromium\";v=\"153\", \"Google Chrome\";v=\"153\", \"Not_A Brand\";v=\"8\""],"Sec-Fetch-Site":["same-origin"],"User-Agent":["Mozilla/5.0 (Linux; Android 10; K) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Mobile Safari/537.36"],"Origin":["https://status.savagepowerboats.com"],"Content-Type":["application/json"],"Referer":["https://status.savagepowerboats.com"],"Accept":["*/*"],"Content-Length":["86"]},"tls":{"resumed":false,"version":772,"ci
...
show less
DDoS Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-10-01 16:46:34
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 146.148.4.7 (7.4.148.146.bc.googleusercontent.c ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.4.7 (7.4.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Oct 01 12:46:26.768984 2026] [security2:error] [pid 1109:tid 1109] [client 146.148.4.7:51014] ModSecurity: Access denied with code 403 (phase 1). Matched phrase ".htpasswd" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sandboxspeech.org.abbysue.com"] [uri "/.htpasswd"] [unique_id "ar6OYhjqu2ZBLW5ZFPcTcQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-10-01 15:34:29
(5 days ago)
Excessive multi-domain requests
Brute-Force
π©πͺ
rh24
2026-10-01 15:25:07
(5 days ago)
(PERMBLOCK) 146.148.4.7 (BE/Belgium/7.4.148.146.bc.googleusercontent.com) has had more than 10 temp ...
show more
(PERMBLOCK) 146.148.4.7 (BE/Belgium/7.4.148.146.bc.googleusercontent.com) has had more than 10 temp blocks
show less
Hacking