๐ต๐ฑ
sefinek.net
2026-05-31 14:15:35
(1 month ago)
Honeypot hit: Empty payload (likely service probe); 8001 [6] TCP
Reported by: https://github.com/sef ...
show more
Honeypot hit: Empty payload (likely service probe); 8001 [6] TCP
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Port Scan
๐ง๐ช
sid3windr
2025-11-16 13:16:31
(8 months ago)
SSH port scan (Tarpitted for 2m40s, wasted 285B)
Port Scan
SSH
๐ฎ๐ณ
Mr.Singh
2025-08-06 03:30:19
(11 months ago)
NFT blocked 45.134.212.199 on 06-Aug-2025..
Port Scan
Brute-Force
๐ฉ๐ช
marzzzello
2025-08-06 02:16:44
(11 months ago)
Ports: 2x 9001
Port Scan
๐ณ๐ฑ
EGP Abuse Dept
2025-08-06 00:19:26
(11 months ago)
Unauthorized connection to proxy port 8080
Port Scan
Hacking
๐ฆ๐บ
Block Rockin' Beats
2025-05-12 21:16:02
(1 year ago)
Scanning forum with forged referal
Hacking
Web App Attack
๐ซ๐ฎ
paissangroup
2025-05-12 07:53:57
(1 year ago)
Multiple WAF Violations
Web App Attack
๐ซ๐ท
LRob
2025-05-12 00:30:04
(1 year ago)
WordPress login brute-force detected by Fail2Ban in plesk-wordpress jail
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-03 21:29:53
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 16:29:47.632030 2025] [security2:error] [pid 18024:tid 18024] [client 45.134.212.199:54237] [client 45.134.212.199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vicrp.com"] [uri "/.git/HEAD"] [unique_id "Z8YfS7aVUtEJfQWAgieznwAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-03 20:21:48
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 15:21:44.216908 2025] [security2:error] [pid 25644:tid 25644] [client 45.134.212.199:54717] [client 45.134.212.199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "learningbyshipping.com"] [uri "/.git//index"] [unique_id "Z8YPWIo582yzGh93SM_ncAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ฆ
yukon.ca
2025-03-03 18:18:22
(1 year ago)
Web Server Enforcement Violation: Web Server Exposed Git Repository Information Disclosure
Port:80
Hacking
Exploited Host
๐ฉ๐ช
rh24
2025-03-03 18:18:13
(1 year ago)
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 45.134.212.199 (PL/P ...
show more
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 45.134.212.199 (PL/Poland/unn-45-134-212-199.datapacket.com)
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2025-03-03 16:31:31
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 11:31:27.748683 2025] [security2:error] [pid 18942:tid 18942] [client 45.134.212.199:50110] [client 45.134.212.199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "balmedia.com"] [uri "/.git/HEAD"] [unique_id "Z8XZX7rNN9LdVoIb9prvNQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
LotPhantom
2025-03-03 13:23:33
(1 year ago)
2025/03/03 13:23:32 [error] 43162#43162: *3265 access forbidden by rule, client: 45.134.212.199, ser ...
show more
2025/03/03 13:23:32 [error] 43162#43162: *3265 access forbidden by rule, client: 45.134.212.199, server: wynnesmiles.com, request: "GET /.git/HEAD HTTP/1.1", host: "wynnesmiles.com"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-03-03 11:50:43
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.c ...
show more
(mod_security) mod_security (id:210492) triggered by 45.134.212.199 (unn-45-134-212-199.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Mar 03 06:50:38.119946 2025] [security2:error] [pid 29808:tid 29808] [client 45.134.212.199:64339] [client 45.134.212.199] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hardemancountyjournal.com"] [uri "/.git/HEAD"] [unique_id "Z8WXjiCTAKuqIJ8cOZmeBQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack