๐ฉ๐ช
Nixwig
2026-10-01 21:15:54
(15 minutes ago)
45.132.227.129 - - [01/Oct/2026:21:15:52 +0000] "GET /credentials/config.json HTTP/1.1" 404 1376 "-" ...
show more
45.132.227.129 - - [01/Oct/2026:21:15:52 +0000] "GET /credentials/config.json HTTP/1.1" 404 1376 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0"
45.132.227.129 - - [01/Oct/2026:21:15:52 +0000] "GET /config/config.js HTTP/1.1" 404 1376 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
45.132.227.129 - - [01/Oct/2026:21:15:53 +0000] "GET /web/config.js HTTP/1.1" 404 1376 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐ธ๐ฌ
heyzg
2026-10-01 11:41:54
(9 hours ago)
HTTP Web Scanning (observed): 3 HTTP, 2s
Bad Web Bot
Web App Attack
๐ฉ๐ช
rh24
2026-10-01 00:41:04
(20 hours ago)
(secretscan) Secret-Scanner (env/git/ssh/credentials) from 45.132.227.129 (US/United States/-)
Hacking
๐ฉ๐ช
pltcldvlpr
2026-09-29 20:48:21
(2 days ago)
CMS/framework probe: 45.132.227.129 - - [29/Sep/2026:22:48:21 +0200] "GET /.vscode/sftp.json HTTP/1. ...
show more
CMS/framework probe: 45.132.227.129 - - [29/Sep/2026:22:48:21 +0200] "GET /.vscode/sftp.json HTTP/1.1" 404 94541 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36" asn=206092 org="F.N.S. HOLDINGS LIMITED" country=US
...
show less
Web App Attack
๐ฉ๐ช
hidemail.app
2026-09-29 15:35:30
(2 days ago)
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto ...
show more
Automated scan for exposed config/secret files and known web exploits (e.g. /.env, RCE probes); auto-banned by fail2ban.
show less
Web App Attack
Hacking
๐ซ๐ท
Stara
2026-09-29 14:55:08
(2 days ago)
Automated block - Joomla/WordPress/OpenCart vulnerability scanner exploitation detected (Mala Kinesk ...
show more
Automated block - Joomla/WordPress/OpenCart vulnerability scanner exploitation detected (Mala Kineskinja)
show less
Hacking
Brute-Force
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-29 14:40:17
(2 days ago)
10 attempts against mh-misc-ban on sonic
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-29 14:40:09
(2 days ago)
(mod_security) mod_security (id:225170) triggered by 45.132.227.129 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:225170) triggered by 45.132.227.129 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 10:40:03.032905 2026] [security2:error] [pid 26702:tid 26774] [client 45.132.227.129:22867] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||boxvalleyrockers.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "boxvalleyrockers.com"] [uri "/rock/wp-includes/id3/license.txt/wp-json/wp/v2/users/"] [unique_id "arvNw5E36hnmISwNL4bXvQAAAZQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-29 12:17:38
(2 days ago)
45.132.227.129 - - [29/Sep/2026:14:17:37 +0200] "GET /whm HTTP/1.1" 301 169 "-" "python-requests/2.3 ...
show more
45.132.227.129 - - [29/Sep/2026:14:17:37 +0200] "GET /whm HTTP/1.1" 301 169 "-" "python-requests/2.32.5"
show less
Bad Web Bot
๐บ๐ธ
integrantservices.com
2026-09-29 09:05:39
(2 days ago)
(wordpress) Failed wordpress login from 45.132.227.129 (US/United States/-)
Brute-Force
๐ฉ๐ช
big-cloud.nl
2026-09-28 21:54:01
(2 days ago)
Try to access /api/.env
Web App Attack
๐ต๐ฑ
Budyn
2026-09-28 16:23:27
(3 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: grafana.dont-eat-the-pudding.xyz | URI: //xmlrpc.php?rsd | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
a.mohamed.go
2026-09-28 09:33:06
(3 days ago)
45.132.227.129 - - [28/Sep/2026:09:33:06 +0000] "POST /wp-json/batch/v1 HTTP/1.1" 404 555 "-" "Mozil ...
show more
45.132.227.129 - - [28/Sep/2026:09:33:06 +0000] "POST /wp-json/batch/v1 HTTP/1.1" 404 555 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐ฉ๐ช
larse99
2026-09-28 02:58:01
(3 days ago)
Detected Scanning / Hacking activity
Port Scan
Hacking
๐ฎ๐ช
AutosOnShow
2026-09-27 18:08:06
(4 days ago)
blocked for webapp attack | path requested: / | seen at 2026-09-27 18:07:37.355 |
Web App Attack