πΊπΈ
craudiovizai
2026-08-21 06:30:25
(19 hours ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
πΊπΈ
craudiovizai
2026-08-19 00:30:40
(3 days ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
πΊπΈ
craudiovizai
2026-08-12 00:30:49
(1 week ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /.env, /wp-admin/instal ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /.env, /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
πΊπΈ
craudiovizai
2026-08-11 12:30:52
(1 week ago)
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. ...
show more
Automated honeypot detection. honeypot against a Next.js application. Paths: /wp-admin/install.php. Blocked at the edge.
show less
Web App Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-08-11 03:07:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 10 23:06:51.819129 2026] [security2:error] [pid 2667444:tid 2667444] [client 172.71.164.158:11249] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "directoryofgems.com"] [uri "/.env.production"] [unique_id "anqRy9aSlfv9Ua0B4_3Z8AAAACc"], referer: https://www.google.com/search?q=directoryofgems.com
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Thaliruth
2026-07-18 16:41:21
(1 month ago)
[18/Jul/2026:18:41:20.610787 +0200] alussAcyMkG5lCnefUsSHAAAABU 172.71.164.158 53438 127.0.0.1 7081
...
show more
[18/Jul/2026:18:41:20.610787 +0200] alussAcyMkG5lCnefUsSHAAAABU 172.71.164.158 53438 127.0.0.1 7081
...
show less
Hacking
Anonymous
2026-07-18 02:03:32
(1 month ago)
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 22271 | TTL: 57 | LEN: 60 | TOS: 0x00 β’ R ...
show more
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 22271 | TTL: 57 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
2026-07-17 16:22:18
(1 month ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 13:53:50
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 09:53:43.270206 2026] [security2:error] [pid 19500:tid 19500] [client 172.71.164.158:13895] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "eliteregenmed.com"] [uri "/.git/config"] [unique_id "aljiZ5LrVU5NKEVS5hcRWgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 13:35:47
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 09:35:44.395947 2026] [security2:error] [pid 23195:tid 23254] [client 172.71.164.158:11706] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "trident-environmental.com"] [uri "/.git/config"] [unique_id "aljeMDHzKeRrJy2BGbj1MwAAAgY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-16 06:53:29
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 16 02:53:21.982146 2026] [security2:error] [pid 4138:tid 4138] [client 172.71.164.158:10030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ladymfashion.com"] [uri "/.git/config"] [unique_id "alh_4WiLJ20w58N3hixJ6wAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-13 01:57:00
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 12 21:56:53.913127 2026] [security2:error] [pid 3385:tid 3385] [client 172.71.164.158:10030] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "alextra.org"] [uri "/.env.sample"] [unique_id "alRF5WZ6lieA-Q_2r__G8wAAAA0"], referer: https://www.google.com/search?q=alextra.org
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-11 20:00:10
(1 month ago)
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 25649 | TTL: 57 | LEN: 60 | TOS: 0x00 β’ R ...
show more
Blocked by firewall on hugin [8443/tcp] | Rule: UFW | SPT: 25649 | TTL: 57 | LEN: 60 | TOS: 0x00 β’ Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-07-02 15:33:10
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 11:33:06.009769 2026] [security2:error] [pid 23626:tid 23626] [client 172.71.164.158:10744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "travel-pix.com"] [uri "/.git/config"] [unique_id "akaEstX-xri8d8AYHwDBoAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-07-02 13:51:13
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.164.158 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 02 09:51:06.101490 2026] [security2:error] [pid 30755:tid 30755] [client 172.71.164.158:14018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "phillatwood.com"] [uri "/.git/config"] [unique_id "akZsyvU9fJGrvEruxvufJAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack