๐ฉ๐ช
updown.io
2026-07-25 02:02:20
(8 hours ago)
{"level":"info","ts":1784944939.5051816,"logger":"http.log.access.log1","msg":"handled request","req ...
show more
{"level":"info","ts":1784944939.5051816,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"3.73.138.200","remote_port":"54588","client_ip":"3.73.138.200","proto":"HTTP/1.1","method":"GET","host":"portal-status.narrator.ai","uri":"/.env.development","headers":{"User-Agent":["Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"],"Accept-Encoding":["gzip, deflate"],"Accept":["*/*"],"Connection":["keep-alive"],"Next-Action":["x"],"X-Nextjs-Request-Id":["2787dec2"],"Cookie":["REDACTED"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"http/1.1","server_name":"portal-status.narrator.ai","ech":false}},"bytes_read":0,"user_id":"","duration":0.000109639,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"info","ts":1784944939.5075984,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"3.73.138.200"
...
show less
DDoS Attack
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-07-24 22:04:18
(12 hours ago)
Auto-ban: >3000 req/min op 2026-07-24
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-24 08:41:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 04:41:29.533079 2026] [security2:error] [pid 269020:tid 269074] [client 3.73.138.200:40736] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wheezer.org"] [uri "/.git/config"] [unique_id "amMlOaQ0ocjb3hrZgbTolAAAAZY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฟ
Antinson
2026-07-24 06:32:15
(1 day ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-07-24 06:27:37
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:27:34.295311 2026] [security2:error] [pid 3506398:tid 3506398] [client 3.73.138.200:53472] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whatcausesmentalillness.com"] [uri "/.git/config"] [unique_id "amMF1jK9N1m2JiyYjqI2jQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-07-24 06:18:04
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities.
show less
Hacking
Web App Attack
๐ซ๐ท
dynamix
2026-07-24 06:17:35
(1 day ago)
Multiple WAF Violations
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 06:06:29
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 02:06:26.314116 2026] [security2:error] [pid 1978:tid 1978] [client 3.73.138.200:38298] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whaletailbikini.com"] [uri "/.git/config"] [unique_id "amMA4trakqc4ELnVbY089wAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 05:08:41
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 24 01:08:37.318934 2026] [security2:error] [pid 7601:tid 7601] [client 3.73.138.200:35602] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wgalleria.com"] [uri "/.git/config"] [unique_id "amLzVbfIhTVStpVmAxZrDAAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 03:43:25
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 23:43:20.222135 2026] [security2:error] [pid 3685083:tid 3685083] [client 3.73.138.200:33022] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wexfordcap.com"] [uri "/.git/config"] [unique_id "amLfWJHEINaqj_kgWrIC3AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-24 03:06:21
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.com ...
show more
(mod_security) mod_security (id:210492) triggered by 3.73.138.200 (ec2-3-73-138-200.eu-central-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 23 23:06:15.758886 2026] [security2:error] [pid 4176272:tid 4176272] [client 3.73.138.200:48314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wethepeoplealliance.org"] [uri "/.git/config"] [unique_id "amLWp_ClxLZprxfGCPe4tgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
backslash
2022-09-23 13:05:04
(3 years ago)
block ruleset bad bot: ignores robots.txt 8010B44F7E78AD8B94C70711C72D11CDE0DAC0F4
Bad Web Bot
๐จ๐ญ
backslash
2022-08-17 05:00:15
(3 years ago)
block ruleset bad bot: ignores robots.txt 8010B44F7E78AD8B94C70711C72D11CDE0DAC0F4
Bad Web Bot