Anonymous
2026-08-22 09:50:40
(21 hours ago)
Banned by Fail2Ban on server
Web App Attack
๐ฟ๐ฆ
conure.sh
2026-08-22 08:00:14
(23 hours ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 07:10:18
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: beta.sweetpuddingtrap.top | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-08-22 07:04:44
(1 day ago)
Try to access /.git/HEAD
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 05:59:04
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 01:58:55.940208 2026] [security2:error] [pid 2760:tid 2760] [client 146.148.49.139:59760] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "line2.biz"] [uri "/.git/HEAD"] [unique_id "aok6n_Twm90EyEjoVwVR5AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 04:36:57
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 00:36:51.906806 2026] [security2:error] [pid 11291:tid 11291] [client 146.148.49.139:50678] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robhoward.me"] [uri "/.git/HEAD"] [unique_id "aoknY9HQnh356QlKdMFx3AAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
WebNiraj
2026-08-22 04:02:42
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 146.148.49.139 (US/United States/139.49.148.146 ...
show more
(mod_security) mod_security (id:949110) triggered by 146.148.49.139 (US/United States/139.49.148.146.bc.googleusercontent.com): 5 in the last 3600 secs [SIGMA]
show less
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-22 03:42:49
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 23:42:43.113057 2026] [security2:error] [pid 2253:tid 2271] [client 146.148.49.139:53748] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.icecc.com"] [uri "/.git/HEAD"] [unique_id "aokas-muM01cGkRMkbvIywAAAZA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-08-22 03:09:47
(1 day ago)
[22/Aug/2026:06:09:47 +0300] -- 146.148.49.139 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.gi ...
show more
[22/Aug/2026:06:09:47 +0300] -- 146.148.49.139 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/HEAD HTTP/1.1
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-22 02:41:13
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: panel.teddypot.store | URI: /.git/HEAD | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
Holger
2026-08-22 02:21:24
(1 day ago)
Bruteforce WebAttack
Brute-Force
Web App Attack
๐ฌ๐ง
Aetherweb Ark
2026-08-22 02:00:22
(1 day ago)
(mod_security) mod_security (id:949110) triggered by 146.148.49.139 (US/United States/139.49.148.146 ...
show more
(mod_security) mod_security (id:949110) triggered by 146.148.49.139 (US/United States/139.49.148.146.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 01:34:07
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 146.148.49.139 (139.49.148.146.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 21:34:02.610870 2026] [security2:error] [pid 16883:tid 16883] [client 146.148.49.139:43276] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cruisingforsex.com"] [uri "/.git/HEAD"] [unique_id "aoj8is_9xJGXFHiHBOoVFwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
LRob
2026-08-17 22:16:00
(5 days ago)
Distributed L7 HTTP flood - mass JavaScript asset and build-manifest harvesting (DDoS)
DDoS Attack
Web App Attack
Anonymous
2022-06-16 05:48:12
(4 years ago)
Excessive crawling/scraping
Hacking
Brute-Force