Anonymous
2026-09-18 10:21:17
(10 hours ago)
IP matched detection query more than 2 hosts and only bad rq long ban.
Brute-Force
Web App Attack
Hacking
๐ณ๐ฑ
Site.eu
2026-09-18 10:19:56
(10 hours ago)
Excessive multi-domain requests
Brute-Force
Anonymous
2026-09-18 09:59:03
(10 hours ago)
IP matched detection query bad paths many.
Brute-Force
Web App Attack
๐ซ๐ฎ
paissangroup
2026-09-18 06:53:47
(13 hours ago)
Multiple WAF Violations
Web App Attack
๐ฎ๐ณ
evicky2002
2026-09-18 06:00:02
(14 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
๐ฌ๐ง
consul.to
2026-09-18 05:42:52
(14 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ต๐ฑ
Budyn
2026-09-17 16:01:45
(1 day ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: vpn.astropot.online | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-17 10:51:27
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-17 09:56:34
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ญ๐บ
miszterx.hu
2026-09-17 09:04:23
(1 day ago)
XORP (haproxy): 12x HTTP 404/403/500 or handshake failure in 24h. Automated report from log_check_ip ...
show more
XORP (haproxy): 12x HTTP 404/403/500 or handshake failure in 24h. Automated report from log_check_iptables_generator.sh (xorp.hu)
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 16:55:25
(2 days ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-09-16 15:24:32
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.167.90 (90.167.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.167.90 (90.167.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:24:24.694305 2026] [security2:error] [pid 9045:tid 9045] [client 34.93.167.90:41420] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valuerec.com"] [uri "/.git/config"] [unique_id "aqq0qKFwm5lgqHPWT1jTyAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 15:00:17
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.167.90 (90.167.93.34.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.167.90 (90.167.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 11:00:09.905558 2026] [security2:error] [pid 27847:tid 27847] [client 34.93.167.90:37658] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "valueandmeaning.com"] [uri "/.git/config"] [unique_id "aqqu-ZjfFhiH3tsGKSoZ_gAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
paulshipley.com.au
2026-09-16 14:59:28
(2 days ago)
[Thu Sep 17 00:59:27.909472 2026] [security2:error] [pid 396828] [client 34.93.167.90:38114] [client ...
show more
[Thu Sep 17 00:59:27.909472 2026] [security2:error] [pid 396828] [client 34.93.167.90:38114] [client 34.93.167.90] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "valueaddedpromotions.com.au"] [uri "/"] [unique_id "aqquz6kONqDZXM2JyY5eoQAAAA8"]
...
show less
Web App Attack
๐บ๐ธ
Victor Lรณpez
2026-09-16 14:20:29
(2 days ago)
valquintero.com.co 34.93.167.90 - - [16/Sep/2026:09:20:25 -0500] "GET /.git/config HTTP/1.1" 404 620 ...
show more
valquintero.com.co 34.93.167.90 - - [16/Sep/2026:09:20:25 -0500] "GET /.git/config HTTP/1.1" 404 6203 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" -
valquintero.com.co 34.93.167.90 - - [16/Sep/2026:09:20:27 -0500] "GET /.env HTTP/1.1" 404 6203 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" -
valquintero.com.co 34.93.167.90 - - [16/Sep/2026:09:20:28 -0500] "GET /.env.local HTTP/1.1" 404 6203 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" -
...
show less
Hacking
Web App Attack