πͺπΈ
raiolanetworks.com
2026-09-20 22:31:08
(1 week ago)
Honeypot detection: Cisco ASA exploit attempt. 2 events observed. Reported automatically from a hone ...
show more
Honeypot detection: Cisco ASA exploit attempt. 2 events observed. Reported automatically from a honeypot sensor.
show less
Hacking
π«π·
Sklurk
2026-09-11 01:54:24
(2 weeks ago)
Web App Attack
Web App Attack
π©πͺ
NxtGenIT
2026-09-03 22:02:24
(3 weeks ago)
CiscoASA Honeypot hit, Payload: "GET /+CSCOE+/logon.html?fcadbadd=1 HTTP/1.1" 200 -,
Brute-Force
π«π·
Sklurk
2026-09-01 00:42:04
(3 weeks ago)
Web App Attack
Web App Attack
π«π·
Sklurk
2026-07-30 01:48:23
(1 month ago)
Web App Attack
Web App Attack
π«π·
Sklurk
2026-07-18 00:10:31
(2 months ago)
Web App Attack
Web App Attack
π«π·
Sklurk
2026-07-09 01:13:49
(2 months ago)
Web App Attack
Web App Attack
π¦πΊ
HJ5Ss4Ju
2026-06-18 05:08:44
(3 months ago)
Blocked by Wordfence (SID 6)
Web App Attack
π¦πΊ
paulshipley.com.au
2026-05-25 14:40:02
(4 months ago)
[Tue May 26 00:40:01.745038 2026] [security2:error] [pid 146403] [client 45.3.62.236:30287] [client ...
show more
[Tue May 26 00:40:01.745038 2026] [security2:error] [pid 146403] [client 45.3.62.236:30287] [client 45.3.62.236] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 10)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "ccideas.com.au"] [uri "/wp-config.php~"] [unique_id "ahRfQamvw54alCtMogNZUwAAAAM"]
...
show less
Web App Attack
π¦πΊ
RedBear IT
2026-03-26 10:00:37
(6 months ago)
"DDoS against public endpoint"
DDoS Attack
πΈπ¬
securejdprop
2026-03-20 19:14:00
(6 months ago)
This IP was detected by CrowdSec triggering crowdsecurity/http-probing. crowdsecurity/http-probing
Hacking
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 10:30:17
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 05:30:12.138518 2025] [security2:error] [pid 19004:tid 19004] [client 45.3.62.236:42181] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.siteworkestimating.com"] [uri "/.git/HEAD"] [unique_id "aSbWtFQCy9yBaTaPe2KuYwAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 06:07:13
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 01:07:06.370044 2025] [security2:error] [pid 31030:tid 31030] [client 45.3.62.236:51889] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.alosi.us"] [uri "/.env"] [unique_id "aSaZCipq_jnib2bcZ4JVhAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 05:21:36
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Nov 26 00:21:29.956918 2025] [security2:error] [pid 29009:tid 29009] [client 45.3.62.236:13925] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.hsoftwaresystems.net"] [uri "/.git/HEAD"] [unique_id "aSaOWQPoT3NlHvy3xgCuMgAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2025-11-26 01:03:23
(10 months ago)
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210492) triggered by 45.3.62.236 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 20:03:19.070080 2025] [security2:error] [pid 16763:tid 16763] [client 45.3.62.236:60519] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.accentspecialties.com"] [uri "/.git/HEAD"] [unique_id "aSZR1-4AaOgHPZ3_ZPZjHgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack