๐จ๐ฟ
lp
2026-09-18 22:49:36
(4 days ago)
Unauthorized VPN login attempts: 3 attempts were recorded from 216.26.246.77
2026-09-19T00:33:25+02: ...
show more
Unauthorized VPN login attempts: 3 attempts were recorded from 216.26.246.77
2026-09-19T00:33:25+02:00 vpn Access-Reject 'administrador' station: 216.26.246.77 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-19T00:35:21+02:00 vpn Access-Reject 'gustavo' station: 216.26.246.77 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
2026-09-19T00:36:52+02:00 vpn Access-Reject 'usuario' station: 216.26.246.77 auth-type: - realm: vse.cz nas: <redacted> called: <redacted> => address-pool: - msg: '<redacted>'
show less
Brute-Force
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-09-18 04:11:07
(5 days ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฎ๐ฉ
Burayot
2026-09-17 08:54:19
(6 days ago)
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 216.26.246.77 (DE/Germany/-): 1 in ...
show more
LF_MODSEC: (mod_security) mod_security (id:1000001) triggered by 216.26.246.77 (DE/Germany/-): 1 in the last 3600 secs
show less
Web App Attack
๐บ๐ธ
drewf.ink
2026-09-04 13:04:59
(2 weeks ago)
[13:04] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gatew ...
show more
[13:04] Attempted HTTPS access to the GlobalProtect prelogin endpoint on the web honeypot (VPN gateway fingerprinting/recon)
show less
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-03 07:05:46
(2 weeks ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ธ๐ช
OnTheEdge
2026-09-03 03:07:42
(2 weeks ago)
Password spraying. Multiple unauthorized login attempts
Hacking
Web App Attack
๐ซ๐ท
Sklurk
2026-08-14 07:45:16
(1 month ago)
Web App Attack
Web App Attack
๐ฉ๐ช
Packets-Decreaser.NET
2025-12-29 14:01:47
(8 months ago)
Incoming Layer 7 Flood Detected
DDoS Attack
Web Spam
๐บ๐ธ
TPI-Abuse
2025-11-25 05:09:52
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:09:43.859517 2025] [security2:error] [pid 5457:tid 5457] [client 216.26.246.77:53813] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.stonetarot.com"] [uri "/.env"] [unique_id "aSU6F4nf9thBkC-fUetf4wAAABQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:36:53
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:36:46.198724 2025] [security2:error] [pid 15101:tid 15125] [client 216.26.246.77:54979] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.cargosanibel.com"] [uri "/.svn/wc.db"] [unique_id "aSUyXqNKS2jdjfTVKRdpDwAAARU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 04:09:17
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 23:09:05.038062 2025] [security2:error] [pid 28046:tid 28046] [client 216.26.246.77:53595] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.couturebikini.com"] [uri "/.env"] [unique_id "aSUr4YcRrACjR8dRe2tLVgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:38:41
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:38:35.910414 2025] [security2:error] [pid 13029:tid 13029] [client 216.26.246.77:46701] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.professorjunk.com"] [uri "/.svn/wc.db"] [unique_id "aSUWqxLAwuAKy18uLD2tjQAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:04:41
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:04:35.925787 2025] [security2:error] [pid 11363:tid 11363] [client 216.26.246.77:52985] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.robinnixon.net"] [uri "/.svn/wc.db"] [unique_id "aSUOswEPicK9yFUIVRuJHgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:36:38
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:36:30.435191 2025] [security2:error] [pid 1812:tid 1812] [client 216.26.246.77:31557] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.flamberge.com"] [uri "/.svn/wc.db"] [unique_id "aSUIHkIYVTmrfiqls1eA_wAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:17:05
(9 months ago)
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 216.26.246.77 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:14:06.793885 2025] [security2:error] [pid 23092:tid 23092] [client 216.26.246.77:47477] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.americanflagcards.com"] [uri "/.env"] [unique_id "aST0zsqT5c0S66L-tK4TcgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack