πΉπ·
neron
2026-07-29 18:19:38
(2 days ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
πΉπ·
neron
2026-07-28 00:19:38
(4 days ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
πΉπ·
neron
2026-07-26 17:50:52
(5 days ago)
CrowdSec blocked: http:scan detected via OPNsense firewall
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-28 18:03:37
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jun 28 14:03:25.338599 2026] [security2:error] [pid 26853:tid 26853] [client 2a0b:f4c2::28:45548] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.sixsensehealing.com"] [uri "/.git/config"] [unique_id "akFh7axCmOuj1ahKqOdvlgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-26 19:02:05
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 26 15:01:58.468656 2026] [security2:error] [pid 31276:tid 31276] [client 2a0b:f4c2::28:2554] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.papelawfirm.com"] [uri "/.git/config"] [unique_id "aj7MpiesmQeIP1LClW7CbAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
xmission.com
2026-06-23 12:17:28
(1 month ago)
Blocked by UFW (TCP on 8333)
Source port: 44850
Packet length: 80
This report (for 2a0b:f4c2:0000:0 ...
show more
Blocked by UFW (TCP on 8333)
Source port: 44850
Packet length: 80
This report (for 2a0b:f4c2:0000:0000:0000:0000:0000:0028) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
πΊπΈ
xmission.com
2026-06-18 17:50:07
(1 month ago)
Blocked by UFW (TCP on 8333)
Source port: 28872
Packet length: 80
This report (for 2a0b:f4c2:0000:0 ...
show more
Blocked by UFW (TCP on 8333)
Source port: 28872
Packet length: 80
This report (for 2a0b:f4c2:0000:0000:0000:0000:0000:0028) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-06-17 11:05:54
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 07:05:43.999069 2026] [security2:error] [pid 12137:tid 12137] [client 2a0b:f4c2::28:33442] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.egass.info.networkmediasoftware.com"] [uri "/.git/config"] [unique_id "ajJ_h2BgugjrUL_xwdH_rwAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
Savvii
2026-06-10 09:41:55
(1 month ago)
20 attempts against mh-misbehave-ban on web-new
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-08 09:44:30
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 05:44:23.323649 2026] [security2:error] [pid 846:tid 846] [client 2a0b:f4c2::28:27104] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.tbnkardesler.com"] [uri "/.git/config"] [unique_id "aiaO99wll6Cpmy6cs_FNjAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
stechusa
2026-05-25 23:08:48
(2 months ago)
ELEVATED_THREAT | country=DE | ASN=Stiftung Erneuerbare Freiheit | AbuseIPDB=22% | Facet request dur ...
show more
ELEVATED_THREAT | country=DE | ASN=Stiftung Erneuerbare Freiheit | AbuseIPDB=22% | Facet request during elevated threat (facet_ratio=0.70, unique_ips=144) | Sequential facet path walking detected (5 paths in order) | Sequential facet path walking detected (6 paths in order)
show less
Bad Web Bot
DDoS Attack
πΊπΈ
stechusa
2026-05-25 23:08:48
(2 months ago)
[Askari] | country=DE | Behavior: Concurrent page load during attack, HTTP/1.1 over TLS, Sequential ...
show more
[Askari] | country=DE | Behavior: Concurrent page load during attack, HTTP/1.1 over TLS, Sequential path crawling
show less
Bad Web Bot
DDoS Attack
πΊπΈ
TPI-Abuse
2026-05-25 13:52:51
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210492) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 25 09:52:44.425682 2026] [security2:error] [pid 13418:tid 13418] [client 2a0b:f4c2::28:23368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "barigby.com"] [uri "/.git/"] [unique_id "ahRULHym3v14ZmkKMVNRsAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-09 17:45:44
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org) ...
show more
(mod_security) mod_security (id:210730) triggered by 2a0b:f4c2::28 (berlin01.tor-exit.artikel10.org): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 09 13:45:37.549028 2026] [security2:error] [pid 32594:tid 32594] [client 2a0b:f4c2::28:55958] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||cliniquecavalancia.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "cliniquecavalancia.com"] [uri "/cliniquecavalan.sql"] [unique_id "af9ywf9Zzuh9-cy2Kd46ygAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
xmission.com
2026-04-29 00:24:36
(3 months ago)
Blocked by UFW (TCP on 8333)
Source port: 1460
Packet length: 80
This report (for 2a0b:f4c2:0000:00 ...
show more
Blocked by UFW (TCP on 8333)
Source port: 1460
Packet length: 80
This report (for 2a0b:f4c2:0000:0000:0000:0000:0000:0028) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan