๐บ๐ธ
donarev419
2026-07-24 01:33:02
(3 days ago)
Port scan detected on port 2082 (connection without data transfer)
Port Scan
๐บ๐ธ
drewf.ink
2026-07-24 01:10:25
(3 days ago)
[01:10] Port scanning. Port(s) scanned: TCP/2082, TCP/2083, TCP/2086, TCP/2087
Port Scan
Anonymous
2026-07-23 22:57:11
(3 days ago)
denied traffic to a honeypot network. destination port 2087.
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-23 22:49:53
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 18:49:47.475789 2026] [security2:error] [pid 3437971:tid 3437971] [client 172.174.165.9:43639] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.10"] [uri "/.git/HEAD"] [unique_id "amKai9S0sbzqk5_nYhcBYgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-23 22:30:50
(3 days ago)
Bot detected scanning for vulnerable pages
Port Scan
๐ฉ๐ช
Mr-Money
2026-07-23 22:29:59
(3 days ago)
172.174.165.9 - - [24/Jul/2026:00:29:58 +0200] "GET /.git/HEAD HTTP/1.1" 404 400 "-" "Mozilla/5.0 (X ...
show more
172.174.165.9 - - [24/Jul/2026:00:29:58 +0200] "GET /.git/HEAD HTTP/1.1" 404 400 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
...
show less
Hacking
SQL Injection
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
centurion
2026-07-15 08:59:55
(1 week ago)
Blocked by UFW on ns02 [80/tcp] Source port: 46128 TTL: 42 Packet length: 60 TOS: 0x00 This report ...
show more
Blocked by UFW on ns02 [80/tcp] Source port: 46128 TTL: 42 Packet length: 60 TOS: 0x00 This report was generated by: https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-10 22:26:57
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 18:26:52.094381 2026] [security2:error] [pid 846987:tid 846987] [client 172.174.165.9:17038] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mayiasteadman.com"] [uri "/.git/config"] [unique_id "adl5LF1R33fj_H4Gw98GhAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-04-10 22:03:21
(3 months ago)
Auto-ban: >3000 req/min op 2026-04-10
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-10 21:46:03
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 17:45:56.095418 2026] [security2:error] [pid 2296163:tid 2296163] [client 172.174.165.9:17217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mrobertsignaturehomes.com"] [uri "/.git/config"] [unique_id "adlvlJjeprHzawgJESpjZwAAAAs"], referer: https://duckduckgo.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐น
Renรฉ Hickersberger
2026-04-10 21:28:22
(3 months ago)
malicious bot detected: violations="hit-honeypot"; user_agent="Mozilla/5.0 (Linux; Android 14; Pixel ...
show more
malicious bot detected: violations="hit-honeypot"; user_agent="Mozilla/5.0 (Linux; Android 14; Pixel 8) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Mobile Safari/537.36"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-10 21:24:17
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.174.165.9 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 10 17:24:09.556666 2026] [security2:error] [pid 3397391:tid 3397391] [client 172.174.165.9:17896] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "test0304.jmnr.net"] [uri "/.git/config"] [unique_id "adlqeSQ9fJpzxqcAs8jluwAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
dynamix
2026-04-10 20:35:23
(3 months ago)
Multiple WAF Violations
Web App Attack
๐ง๐ช
cmbplf
2026-04-10 20:34:42
(3 months ago)
1.721 requests with url.path */.git/config
Brute-Force
Bad Web Bot
๐ซ๐ท
masterguru
2026-04-10 20:28:19
(3 months ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack