๐บ๐ธ
www.winos.me
2026-08-28 21:34:12
(4 weeks ago)
Shield: Layer4 Port 9 Trap
Port Scan
Hacking
๐ฆ๐บ
AWW-Admin
2026-08-25 14:08:04
(1 month ago)
(mod_security) mod_security triggered on hostname [redacted] 172.214.155.234 (US/United States/-)
SQL Injection
๐บ๐ธ
kosada.com
2026-08-25 13:36:28
(1 month ago)
Web vulnerability probing: /.git/index (bogus vhost/SNI)
Web App Attack
๐ฉ๐ช
www.fransveldman.world
2026-08-11 12:40:10
(1 month ago)
Fetched browser challenge page 10 times in <2h without solving. Likely bad bot.
Bad Web Bot
๐บ๐ธ
MPL
2026-08-07 09:54:43
(1 month ago)
tcp port scan (10 or more attempts)
Port Scan
๐ฉ๐ช
wiredalter
2026-08-07 08:45:19
(1 month ago)
Blocked by UFW on dVPS [2087/tcp]
Source Port: 54341
TTL: 39
Packet Length: 60
TOS: 0x00
Analyzed b ...
show more
Blocked by UFW on dVPS [2087/tcp]
Source Port: 54341
TTL: 39
Packet Length: 60
TOS: 0x00
Analyzed by https://ip.wiredalter.com
show less
Port Scan
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-07 07:54:25
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.214.155.234 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.214.155.234 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 03:54:18.309244 2026] [security2:error] [pid 9391:tid 9391] [client 172.214.155.234:55412] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.72"] [uri "/.git/HEAD"] [unique_id "anWPKiXAY_8usu9dbyipaQAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 07:12:16
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.214.155.234 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.214.155.234 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 03:12:10.101066 2026] [security2:error] [pid 1412646:tid 1412646] [client 172.214.155.234:54532] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.38"] [uri "/.git/HEAD"] [unique_id "anWFSkpR9__FwkMTSe8WEgAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-07 06:57:31
(1 month ago)
Aggressive web scan
Web App Attack
๐ฉ๐ช
et-a_network
2026-08-07 06:41:32
(1 month ago)
172.214.155.234 - - [07/Aug/2026:06:41:27 +0000] "GET /.git/HEAD HTTP/1.1" 301 162 "-" "Mozilla/5.0 ...
show more
172.214.155.234 - - [07/Aug/2026:06:41:27 +0000] "GET /.git/HEAD HTTP/1.1" 301 162 "-" "Mozilla/5.0 (compatible; Googlebot/2.1; +http://www.google.com/bot.html)" host=87.106.176.162 via=172.214.155.234 rt=0.000
172.214.155.234 - - [07/Aug/2026:06:41:27 +0000] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 14_4_1) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.4 Safari/605.1.15" host=87.106.176.162 via=172.214.155.234 rt=0.000
172.214.155.234 - - [07/Aug/2026:06:41:28 +0000] "GET /.git/logs/HEAD HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:125.0) Gecko/20100101 Firefox/125.0" host=87.106.176.162 via=172.214.155.234 rt=0.000
172.214.155.234 - - [07/Aug/2026:06:41:29 +0000] "GET /.git/refs/heads/master HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36 Edg/124.0.0.0" host=87.106.176.162 via=172.214.155.234 rt=0.000
172.214.155.234 - - [07/Aug/202
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-07 06:16:06
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.214.155.234 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 172.214.155.234 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 07 02:16:00.453625 2026] [security2:error] [pid 3487364:tid 3487364] [client 172.214.155.234:55571] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.20"] [uri "/.git/HEAD"] [unique_id "anV4IPf0bDzYeiHC5Qe9fQAAAB0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MPL
2026-08-07 05:40:52
(1 month ago)
tcp port scan (20 or more attempts)
Port Scan
๐ธ๐ช
www.remote24.se
2026-08-04 17:44:27
(1 month ago)
3389BruteforceStormFW21
Brute-Force
๐น๐ท
SeczarSecureOps
2026-06-25 13:09:39
(3 months ago)
Auto-blocked by Seczar SecureOps โ IPS Web Attack Signature (1 events in 5min) at 2026-06-25 13:09
Web App Attack
Bad Web Bot
Anonymous
2026-06-25 10:44:25
(3 months ago)
Unauthorized connection attempt
Port Scan
Hacking
Exploited Host