๐บ๐ธ
TPI-Abuse
2026-08-22 21:56:55
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.182.212.4 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.182.212.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 17:56:49.603972 2026] [security2:error] [pid 1571:tid 1587] [client 172.182.212.4:42827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.24"] [uri "/.git/index"] [unique_id "aoobISVXkdMClu8lopDWzAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐น๐ผ
tyetriiix
2026-08-22 21:33:24
(1 day ago)
Wazuh Alert Evidence: 172.182.212.4 - - [22/Aug/2026:21:33:21 +0000] "GET /.git/HEAD HTTP/1.1" 403 5 ...
show more
Wazuh Alert Evidence: 172.182.212.4 - - [22/Aug/2026:21:33:21 +0000] "GET /.git/HEAD HTTP/1.1" 403 548 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/123.0.0.0 Safari/537.36" "-" Origin: "-" CORS_Header: "-" Sent_allow_origin: "-"
show less
Web App Attack
๐น๐ท
SeczarSecureOps
2026-08-22 20:50:08
(1 day ago)
Auto-blocked by Seczar SecureOps โ Port Scan Detection (10 events in 10min) at 2026-08-22 20:50
Port Scan
๐ฉ๐ช
ddobko
2026-08-22 20:08:47
(1 day ago)
Bad Web Bot
Web App Attack
๐ฉ๐ช
zupan
2026-08-22 19:04:51
(1 day ago)
Blocked by UFW on vps [2078/tcp] | SPT: 43905 | TTL: 41 | LEN: 60 | TOS: 0x00 โข Reported by: github. ...
show more
Blocked by UFW on vps [2078/tcp] | SPT: 43905 | TTL: 41 | LEN: 60 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
๐บ๐ธ
GreekCity
2026-08-22 18:37:02
(1 day ago)
[Sat Aug 22 13:37:01.851187 2026] [proxy_fcgi:error] [pid 527673:tid 527673] [client 172.182.212.4:4 ...
show more
[Sat Aug 22 13:37:01.851187 2026] [proxy_fcgi:error] [pid 527673:tid 527673] [client 172.182.212.4:43953] AH01071: Got error 'Primary script unknown'
...
show less
Hacking
๐ฆ๐บ
dyln
2026-08-22 18:12:53
(1 day ago)
Dyls honeypot brute-force: proto8 (49 total hits)
Brute-Force
๐ต๐ฑ
TaKeN
2026-08-22 17:25:48
(2 days ago)
Automated Wazuh local observation. Wazuh rule 31151 lvl=10 detected repeated HTTP web application pr ...
show more
Automated Wazuh local observation. Wazuh rule 31151 lvl=10 detected repeated HTTP web application probing from this source IP. Observed 1 matching blocked event(s) between 2026-08-22T19:25:48+02:00 and 2026-08-22T19:25:48+02:00. Sample requested paths: /.aws/credentials.
show less
Web App Attack
Hacking
๐ณ๐ฑ
ipoac.nl
2026-08-22 17:18:24
(2 days ago)
ipoac.nl:80 172.182.212.4 - - [22/Aug/2026:19:18:23 +0200] 84.27.222.8 "GET /.git/HEAD HTTP/1.1" 404 ...
show more
ipoac.nl:80 172.182.212.4 - - [22/Aug/2026:19:18:23 +0200] 84.27.222.8 "GET /.git/HEAD HTTP/1.1" 404 1679 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36"
show less
Bad Web Bot
๐บ๐ธ
GreekCity
2026-08-22 13:37:02
(2 days ago)
bad-bot hacking for vulnerable links.
Hacking
Exploited Host
๐ฎ๐น
VHosting
2026-08-12 01:10:03
(1 week ago)
Detected mail brute force attack from 4 different servers
Brute-Force
๐ซ๐ท
mail.avx.gr
2026-07-27 15:38:36
(4 weeks ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default:80 172.182.212.4 - - [25/Jul/2026:20:39:3 ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: default:80 172.182.212.4 - - [25/Jul/2026:20:39:33 +0300] "GET /.git/HEAD HTTP/1.1" 403 408 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14.4; rv:125.0) Gecko/20100101 Firefox/125.0"
show less
Web App Attack
๐ท๐ธ
Scan
2026-07-27 00:31:13
(4 weeks ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-27 00:02:21
(4 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.182.212.4 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.182.212.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 20:02:12.707780 2026] [security2:error] [pid 1572078:tid 1572091] [client 172.182.212.4:48133] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.123"] [uri "/.git/HEAD"] [unique_id "amagBB2Ho-NSSc6RJNgE1AAAAQo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-25 18:37:55
(4 weeks ago)
Web App Attack