๐ฌ๐ง
consul.to
2026-10-05 23:34:47
(1 day ago)
Web attack/malicious scanning detected
Web App Attack
๐ง๐ช
cmbplf
2026-10-05 15:40:39
(2 days ago)
1371 limiting connections by zone (11m59s)
DDoS Attack
๐ซ๐ฎ
geot
2026-09-29 01:51:59
(1 week ago)
POST / HTTP/1.1
GET /.env HTTP/1.1
Port Scan
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:36:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:36:27.965375 2026] [security2:error] [pid 29555:tid 29555] [client 194.5.49.231:41541] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.146"] [uri "/.env"] [unique_id "arlwO98c9tr3aVVjEaW9GwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
bescared
2026-09-27 19:24:44
(1 week ago)
F2B - Malicious activity detected. URL Probing. -8ff06ede-
Hacking
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 19:17:26
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 15:17:22.266417 2026] [security2:error] [pid 4433:tid 4433] [client 194.5.49.231:53055] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.37"] [uri "/.env"] [unique_id "arlrwu8guWNMjOXsoXYmYAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 18:59:07
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 14:59:03.875994 2026] [security2:error] [pid 23515:tid 23515] [client 194.5.49.231:43399] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.156"] [uri "/.env"] [unique_id "arlnd_-W14Z6GLtBmmnKUQAAABg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 18:39:20
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 14:39:15.496148 2026] [security2:error] [pid 30292:tid 30292] [client 194.5.49.231:30185] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.247"] [uri "/.env"] [unique_id "arli03-Wf96ev8qZW7saqAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
MusicLibrary
2026-09-27 18:09:54
(1 week ago)
Attempted access to sensitive configuration files (.env, .git, etc.)
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 18:04:54
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 14:04:50.637730 2026] [security2:error] [pid 29474:tid 29474] [client 194.5.49.231:24865] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.12"] [uri "/.env"] [unique_id "arlawrlIhbsxxaB4vBj4TAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-27 17:49:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 194.5.49.231 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 27 13:49:39.974680 2026] [security2:error] [pid 833:tid 833] [client 194.5.49.231:31231] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.19"] [uri "/.env"] [unique_id "arlXM9LYdCSTxpgwC8_5LQAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Tsumugi Kotobuki
2026-09-27 17:25:02
(1 week ago)
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 55 | Len: 60B | Win: ...
show more
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 55 | Len: 60B | Win: 64240(1) | F2B/ufw-honeypot@2026-09-27T17:25:02Z
show less
Port Scan
Hacking
Anonymous
2024-05-24 02:32:23
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2024-05-18 02:03:24
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH
Anonymous
2024-05-15 01:34:02
(2 years ago)
Ports: 80,443; Direction: 0; Trigger: LF_CUSTOMTRIGGER
Brute-Force
SSH