Anonymous
2026-07-01 04:32:58
(3 days ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
MPL
2026-06-02 07:27:00
(1 month ago)
tcp ports: 2083,2086 (4 or more attempts)
Port Scan
๐ซ๐ท
dynamix
2026-06-02 07:26:57
(1 month ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 06:50:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.183.94.247 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.183.94.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 02:49:53.771210 2026] [security2:error] [pid 28659:tid 28659] [client 172.183.94.247:4651] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.150"] [uri "/.git/config"] [unique_id "ah59Ef3_NydUR_8QbD81nwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 05:49:04
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.183.94.247 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.183.94.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 01:49:01.671788 2026] [security2:error] [pid 5440:tid 5440] [client 172.183.94.247:4635] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.226"] [uri "/.git/config"] [unique_id "ah5uze8b2VuspR59_kkVTwAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Choice Tech LLC
2026-06-02 05:05:02
(1 month ago)
Blocked by OPNsense firewall; 8 hits, proto=tcp, ports=2082,2083,2086,2087,443,80,8080,8443
Port Scan
Hacking
๐ฌ๐ง
Nov
2026-06-02 05:03:44
(1 month ago)
Unauthorized HTTP access attempt (tcp/80)
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-02 04:18:01
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.183.94.247 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.183.94.247 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 00:17:55.011902 2026] [security2:error] [pid 12252:tid 12279] [client 172.183.94.247:5333] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.18"] [uri "/.git/HEAD"] [unique_id "ah5Zc2ov85AsZRbiC2Q2OgAAAZg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-06-02 03:31:09
(1 month ago)
tcp port scan (8 or more attempts)
Port Scan
๐น๐ท
SeczarSecureOps
2026-06-02 02:30:53
(1 month ago)
Seczar SecureOps โ Port Scan Detection (5 events) โ quarantined 43200m on fgdcapi
Port Scan
๐ณ๐ฑ
COMPLEX
2026-06-02 02:19:01
(1 month ago)
Unsolicited TCP traffic | Action: DROP | Port 443
Phishing
๐ฉ๐ช
2048
2026-04-28 19:27:18
(2 months ago)
2026-04-28T21:27:15.094231+02:00 machodeer kernel: [112349.825592] [UFW BLOCK] IN=ens3 OUT= MAC=REDA ...
show more
2026-04-28T21:27:15.094231+02:00 machodeer kernel: [112349.825592] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.183.94.247 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=45 ID=43371 DF PROTO=TCP SPT=52283 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
2026-04-28T21:27:16.139292+02:00 machodeer kernel: [112350.869644] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.183.94.247 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=45 ID=43372 DF PROTO=TCP SPT=52283 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
2026-04-28T21:27:17.158316+02:00 machodeer kernel: [112351.889598] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.183.94.247 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=45 ID=43373 DF PROTO=TCP SPT=52283 DPT=443 WINDOW=64240 RES=0x00 SYN URGP=0
show less
Port Scan
๐น๐ท
0xi
2026-03-13 05:45:48
(3 months ago)
SSH brute-force attack detected (50 attempts). Targeted ports: 22. Triggered sensors: P0f, Cowrie, S ...
show more
SSH brute-force attack detected (50 attempts). Targeted ports: 22. Triggered sensors: P0f, Cowrie, Suricata, Fatt. Observed via distributed honeypot network.
show less
Brute-Force
SSH
๐ฉ๐ช
enjoyably
2026-02-28 23:02:14
(4 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/ssh-bf
SSH
Brute-Force
๐น๐ท
rtbh.com.tr
2026-02-28 20:11:48
(4 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force