๐ฟ๐ฆ
conure
2026-07-20 12:11:18
(3 days ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 0s
Web App Attack
๐ท๐ธ
Smel
2026-07-20 06:18:03
(3 days ago)
Unauthorized Probe/Connection, Hack -
Port Scan
Hacking
๐ฟ๐ฆ
conure
2026-07-20 05:24:01
(3 days ago)
csagent: score 20.7: secrets grab x3, 404 noise floor x3; 1 domain(s) in 12m0s
Web App Attack
๐บ๐ธ
Epimetheus
2026-07-20 04:52:17
(3 days ago)
Unauthorized access attempts:
[GET] /.git/./config
UA: SEC-SGHE900/1.0 NetFront/3.2 Profile/MIDP-2 ...
show more
Unauthorized access attempts:
[GET] /.git/./config
UA: SEC-SGHE900/1.0 NetFront/3.2 Profile/MIDP-2.0 Configuration/CLDC-1.1 Opera/8.01 (J2ME/MIDP; Opera Mini/2.0.4509/1378; nl; U; ssr)
show less
Web App Attack
๐ฉ๐ช
FeG Deutschland
2026-07-20 03:10:42
(3 days ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ณ๐ฑ
knock
2026-07-13 00:56:43
(1 week ago)
Knock-Knock honeypot brute-force: proto8 (1 total hits)
Brute-Force
๐จ๐ณ
ThreatBook.io
2026-05-01 23:19:03
(2 months ago)
ThreatBook Intelligence: Spam,Gateway more details on https://threatbook.io/ip/209.50.162.37
2026-05 ...
show more
ThreatBook Intelligence: Spam,Gateway more details on https://threatbook.io/ip/209.50.162.37
2026-05-01 22:36:16 /
2026-05-01 23:02:27 /
show less
Web App Attack
๐ฆ๐บ
oncord
2026-04-09 16:29:40
(3 months ago)
Form spam
Web Spam
๐บ๐ธ
TPI-Abuse
2026-02-19 02:51:48
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 21:51:41.793706 2026] [security2:error] [pid 10968:tid 10968] [client 209.50.162.37:52243] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kellermoving.com"] [uri "/wp/.git/config"] [unique_id "aZZ6vfHy-eqpw_8F1TLxMAAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-19 00:27:12
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 19:27:05.809155 2026] [security2:error] [pid 18888:tid 18888] [client 209.50.162.37:20507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "voltbox.com"] [uri "/.env.save"] [unique_id "aZZY2YEuQI9tx0cfUlSaLAAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 23:09:45
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 18:09:38.559014 2026] [security2:error] [pid 23237:tid 23237] [client 209.50.162.37:60119] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "veneye.com"] [uri "/backend/.env"] [unique_id "aZZGsvc2fQn1bGxL1AgvIAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 22:44:27
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 17:44:22.383760 2026] [security2:error] [pid 26047:tid 26047] [client 209.50.162.37:61217] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valarien.com"] [uri "/backend/.env"] [unique_id "aZZAxpRlVkbTdKi60zCLhAAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 13:23:59
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 08:23:53.953145 2026] [security2:error] [pid 3760:tid 3760] [client 209.50.162.37:52673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "windisfun.com"] [uri "/.git/config"] [unique_id "aZW9aZ8zfkxlLjDi4KdsKwAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-02-18 13:07:18
(5 months ago)
Malicious activity detected
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-18 12:22:01
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 209.50.162.37 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Feb 18 07:21:55.054399 2026] [security2:error] [pid 12635:tid 12635] [client 209.50.162.37:27455] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web-sitebuilder.com"] [uri "/admin/.env"] [unique_id "aZWu4z0BQa86j2aS1hdL4gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack