π³π±
Nerdscave Hosting
2026-10-03 08:55:23
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 08:55:23 UTC
Port: 30105
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 08:55:23 UTC
Port: 30105
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 08:25:19
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 08:25:19 UTC
Port: 30214
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 08:25:19 UTC
Port: 30214
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 07:55:14
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 07:55:14 UTC
Port: 33095
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 07:55:14 UTC
Port: 33095
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 07:25:09
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 07:25:09 UTC
Port: 31892
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 07:25:09 UTC
Port: 31892
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 06:55:05
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 06:55:04 UTC
Port: 30406
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 06:55:04 UTC
Port: 30406
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 06:25:00
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 06:25:00 UTC
Port: 31918
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 06:25:00 UTC
Port: 31918
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 05:54:55
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 05:54:55 UTC
Port: 30672
Attempted credentials (Base64): ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 05:54:55 UTC
Port: 30672
Attempted credentials (Base64): RVNNQnJ8GAF8InwCTlQgTE0gMC4xMnwCU01CIDIuMDAyfAJTTUIgMi4/Pz8=
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
π³π±
Nerdscave Hosting
2026-10-03 05:24:49
(5 days ago)
[SMB Honeypot Report]
Timestamp: 2026-10-03 05:24:49 UTC
Port: 33758
No credentials captured
Attack ...
show more
[SMB Honeypot Report]
Timestamp: 2026-10-03 05:24:49 UTC
Port: 33758
No credentials captured
Attack Type: Unauthorized SMB connection attempt
show less
Brute-Force
Port Scan
Hacking
πΊπΈ
TPI-Abuse
2026-05-22 14:10:36
(4 months ago)
(mod_security) mod_security (id:210350) triggered by 183.167.92.197 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210350) triggered by 183.167.92.197 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 22 10:10:27.929565 2026] [security2:error] [pid 13630:tid 13630] [client 183.167.92.197:9297] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||www.player-care.com|F|4"] [data "close, keep-alive"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "www.player-care.com"] [uri "/removing-the-pumpbox.html"] [unique_id "ahBj0wFBwP35QcKBSFzA7AAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack