๐ท๐บ
DZBOT
2026-06-11 16:41:27
(10 hours ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฌ๐ง
Axel
2026-06-10 07:12:02
(1 day ago)
Blocked by ModSecurity. Rule ID: 210730 Message: COMODO WAF: URL file extension is restricted by pol ...
show more
Blocked by ModSecurity. Rule ID: 210730 Message: COMODO WAF: URL file extension is restricted by policy||redcasiepac.com|F|2 Phase: 2 Severity: CRITICAL URI: /.config/gcloud/credentials.db Server: UK-01
show less
Web App Attack
Hacking
SQL Injection
๐บ๐ฆ
URAN Publishing Service
2026-06-09 01:10:30
(3 days ago)
172.71.172.213 - - [09/Jun/2026:04:10:01 +0300] "GET /wp-content/uploads/ HTTP/1.1" 404 768 "https:/ ...
show more
172.71.172.213 - - [09/Jun/2026:04:10:01 +0300] "GET /wp-content/uploads/ HTTP/1.1" 404 768 "https://www.google.com/" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/121.0.0.0 Safari/537.36"
172.71.172.213 - - [09/Jun/2026:04:10:30 +0300] "GET /wp-content/themes/ HTTP/1.1" 404 768 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:122.0) Gecko/20100101 Firefox/122.0"
...
show less
Web App Attack
๐ฉ๐ช
acadeova
2026-06-05 21:13:21
(6 days ago)
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-06-02 18:18:05
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.213 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 14:17:57.933686 2026] [security2:error] [pid 25082:tid 25082] [client 172.71.172.213:10573] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wilburmanagementgroup.com"] [uri "/.git/config"] [unique_id "ah8eVf1hjz104K3qaqnM3gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 15:05:18
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 10:52:41
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.213 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 06:52:37.662720 2026] [security2:error] [pid 17844:tid 17868] [client 172.71.172.213:11744] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bbpuertadelsol.com"] [uri "/.git/config"] [unique_id "ah619S5cWsOI2lt2c7ziGAAAAM0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 01:56:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.71.172.213 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.172.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 21:56:39.407202 2026] [security2:error] [pid 2059:tid 2059] [client 172.71.172.213:12487] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "scruffware.com"] [uri "/.git/config"] [unique_id "ah44V9hKATtbWHtCYBFLzAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
acadeova
2026-05-25 06:51:38
(2 weeks ago)
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
acadeova
2026-05-23 09:54:13
(2 weeks ago)
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐จ๐ญ
backslash
2026-05-23 05:21:00
(2 weeks ago)
Bad Web Bot
๐ฉ๐ช
2048
2026-05-20 22:13:59
(3 weeks ago)
2026-05-21T00:13:56.256958+02:00 machodeer kernel: [2023153.267401] [UFW BLOCK] IN=ens3 OUT= MAC=RED ...
show more
2026-05-21T00:13:56.256958+02:00 machodeer kernel: [2023153.267401] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.71.172.213 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=58 ID=57586 DF PROTO=TCP SPT=12224 DPT=80 WINDOW=65535 RES=0x00 SYN URGP=0
2026-05-21T00:13:57.318044+02:00 machodeer kernel: [2023154.328499] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.71.172.213 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=58 ID=57587 DF PROTO=TCP SPT=12224 DPT=80 WINDOW=65535 RES=0x00 SYN URGP=0
2026-05-21T00:13:58.341426+02:00 machodeer kernel: [2023155.351572] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=172.71.172.213 DST=REDACTED LEN=60 TOS=0x00 PREC=0x00 TTL=58 ID=57588 DF PROTO=TCP SPT=12224 DPT=80 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐ฉ๐ช
acadeova
2026-05-19 01:14:53
(3 weeks ago)
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
Anonymous
2026-05-11 09:34:18
(1 month ago)
[Mon May 11 11:34:17.644666 2026] [authz_core:error] [pid 4404] [client 172.71.172.213:12756] AH0163 ...
show more
[Mon May 11 11:34:17.644666 2026] [authz_core:error] [pid 4404] [client 172.71.172.213:12756] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon May 11 11:34:17.892078 2026] [authz_core:error] [pid 4404] [client 172.71.172.213:12756] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Mon May 11 11:34:18.167966 2026] [authz_core:error] [pid 4404] [client 172.71.172.213:12756] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ฉ๐ช
acadeova
2026-05-10 14:52:56
(1 month ago)
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(jour ...
show more
๐จ Recon detected (nft drop)
SRC=172.71.172.213
Observed=TCP dpt=80 in=enp0s6 ttl=59
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan