๐ฎ๐ช
Coolnagour
2026-09-01 19:35:39
(2 hours ago)
funnypot web honeypot, port 80: GET http://funnypot.org/wp-admin/install.php
Web App Attack
๐ฎ๐ช
Coolnagour
2026-08-31 16:55:21
(1 day ago)
funnypot web honeypot, port 80: GET http://funnypot.org/wp-admin/install.php
Web App Attack
๐ฉ๐ช
ValtonTahiri
2026-08-30 19:39:32
(2 days ago)
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show more
UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=162.158.182.98; proto=TCP; source_port=13317; target_port=2095; flags=SYN
show less
Port Scan
๐ฎ๐ช
Coolnagour
2026-08-30 16:24:37
(2 days ago)
funnypot web honeypot, port 80: GET http://funnypot.org/wp-admin/install.php
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 06:13:31
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 02:13:23.104275 2026] [security2:error] [pid 10144:tid 10144] [client 162.158.182.98:12683] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.exploratorymusic.net"] [uri "/.git/HEAD"] [unique_id "aoVJg7mqwm1fWbM1_NoeXAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 03:34:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:33:57.580235 2026] [security2:error] [pid 25637:tid 25637] [client 162.158.182.98:10624] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.axiselectric.net"] [uri "/.git/config"] [unique_id "aoUkJZZ4eQ-nvxh8rofM3QAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 03:14:22
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 23:14:14.778901 2026] [security2:error] [pid 14342:tid 14342] [client 162.158.182.98:10857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.cyclingboardgames.net"] [uri "/.git/HEAD"] [unique_id "aoUfhhJngvAGaWo4RqtTRwAAADo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:00:46
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:00:42.502461 2026] [security2:error] [pid 5645:tid 5645] [client 162.158.182.98:10417] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.dc406.net"] [uri "/.git/config"] [unique_id "aoJ5Wkf3gQHL9sbGqQpv-AAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ช๐ธ
el-brujo
2026-08-16 03:36:35
(2 weeks ago)
16/Aug/2026:05:36:34.920785 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
16/Aug/2026:05:36:34.920785 +0200Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 162.158.182.98] ModSecurity: Warning. Matched phrase "/.git/" at REQUEST_FILENAME. [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-930-APPLICATION-ATTACK-LFI.conf"] [line "125"] [id "930130"] [msg "Restricted File Access Attempt"] [data "Matched Data: /.git/ found within REQUEST_FILENAME: /.git/head"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-lfi"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/255/153/126"] [tag "PCI/6.5.4"] [hostname "alpine.elhacker.net"] [uri "/.git/HEAD"] [unique_id "aoEwQqxd99F3JXNT4wxOqgAAIGM"]
...
show less
Hacking
Web App Attack
๐ง๐ช
madeit
2026-08-08 22:15:54
(3 weeks ago)
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-08 22:00:37
(3 weeks ago)
Auto-ban: >3000 req/min op 2026-08-08
Web App Attack
SSH
Hacking
๐ฉ๐ช
FeG Deutschland
2026-07-11 01:09:44
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 12
Exploited Host
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-06-27 05:34:24
(2 months ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐จ๐ญ
ALPHANET
2026-06-15 00:20:49
(2 months ago)
web exploits
Hacking
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 23:39:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.182.98 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 19:39:08.755858 2026] [security2:error] [pid 21558:tid 21574] [client 162.158.182.98:13746] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barnetts.us"] [uri "/.git/config"] [unique_id "aidSnAqGecAUlQa44EOEnwAAAA4"], referer: https://www.google.com/search?q=barnetts.us
show less
Brute-Force
Bad Web Bot
Web App Attack