๐ฌ๐ง
PeravixGroup
2026-05-08 03:21:47
(1 month ago)
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Sever ...
show more
Honeypot detection: Docker daemon unauthorized access / container escape attempt on port 2375. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
Anonymous
2026-04-13 23:31:34
(1 month ago)
Attempt to scan vulnerabilities
Hacking
Anonymous
2026-04-12 05:49:50
(1 month ago)
Attempt to scan vulnerabilities
Hacking
๐ช๐ธ
10dencehispahard SL
2026-01-26 10:25:15
(4 months ago)
Wordpress probing for vulnerabilities
Hacking
Exploited Host
๐ฉ๐ช
iNetWorker
2026-01-02 03:24:25
(5 months ago)
trolling for resource vulnerabilities
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 03:58:29
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 22:58:26.317958 2025] [security2:error] [pid 9598:tid 9598] [client 216.26.236.36:26507] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ols.e-zschedule.com"] [uri "/.svn/wc.db"] [unique_id "aSZ64hek1aMJqL4BU-5LkAAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 02:14:36
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 21:14:30.037805 2025] [security2:error] [pid 30665:tid 30665] [client 216.26.236.36:52197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.oceandrivebeach.net"] [uri "/.git/HEAD"] [unique_id "aSZihp0YZ1bH3-8nDv6JQQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 01:16:38
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:16:32.143721 2025] [security2:error] [pid 31472:tid 31472] [client 216.26.236.36:38857] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.anywheregarden.com"] [uri "/.git/HEAD"] [unique_id "aSZU8C7Lv0oDKOYyYBmJ3QAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-26 00:35:51
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 19:35:46.392656 2025] [security2:error] [pid 6649:tid 6696] [client 216.26.236.36:60771] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.ahmedalbanna.dubarch.com"] [uri "/.env"] [unique_id "aSZLYvCQPT6s-IHquRxcxwAAAUw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:50:52
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:50:46.640059 2025] [security2:error] [pid 9779:tid 9779] [client 216.26.236.36:43751] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.santaclausphonecall.com.evannine.com"] [uri "/.git/HEAD"] [unique_id "aSQARm28XdLMkaDb_ckOuAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 06:21:31
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 01:21:28.296766 2025] [security2:error] [pid 10693:tid 10749] [client 216.26.236.36:39989] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lasertagandgames.com"] [uri "/.git/HEAD"] [unique_id "aSP5aBp_fjf3XoBXB35cUgAAANQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:59:32
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:58:56.701060 2025] [security2:error] [pid 3321136:tid 3321136] [client 216.26.236.36:11285] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.newcitypark.com"] [uri "/.svn/wc.db"] [unique_id "aSPmELJebdSCObICM3h25gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:18:25
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.236.36 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:18:20.236479 2025] [security2:error] [pid 3965259:tid 3965346] [client 216.26.236.36:9001] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.certifiedprojectmanager.us"] [uri "/.env"] [unique_id "aSPcjMHsvdKIeQe-cM_4cwAAAVU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-14 04:06:38
(6 months ago)
This IP was involved in a brute force and password spray attack.
Brute-Force
Web App Attack
Anonymous
2025-10-18 03:03:42
(7 months ago)
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.10.18 is noted in report tim ...
show more
Attempted brute force login to web vpn 2 time(s); last attempt for 2025.10.18 is noted in report timestamp
show less
Hacking
Brute-Force