π―π΅
SentinalX by uzumaru
2026-06-10 03:56:51
(2 days ago)
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was ...
show more
Detected by SentinelX honeypot: sent HTTP CONNECT request probing for an open proxy. Connection was hijacked and held in a tarpit to slow down the scan. Probed target: fapi.binance.com:443
show less
Open Proxy
Port Scan
πΊπΈ
MPL
2026-06-02 08:56:30
(1 week ago)
tcp/2
Port Scan
Anonymous
2026-06-02 08:35:53
(1 week ago)
Try to connect to Port_Scan_2_stealth
Port Scan
πΊπΈ
MPL
2026-06-02 08:25:59
(1 week ago)
tcp/2 (3 or more attempts)
Port Scan
π¬π§
PeravixGroup
2026-06-02 07:26:57
(1 week ago)
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. A ...
show more
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. Aaran.cloud
show less
Port Scan
Bad Web Bot
πΊπΈ
gu-alvareza
2026-06-02 07:05:38
(1 week ago)
HTPasswd.Access
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-02 06:50:15
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 48.214.55.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 48.214.55.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 02:50:12.595539 2026] [security2:error] [pid 23492:tid 23704] [client 48.214.55.51:48653] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.44"] [uri "/.git/HEAD"] [unique_id "ah59JAjYge4aRdKFXtbCAwAAAMw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-02 05:32:35
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 48.214.55.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 48.214.55.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 01:32:28.622756 2026] [security2:error] [pid 12542:tid 12542] [client 48.214.55.51:49088] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.184"] [uri "/.git/config"] [unique_id "ah5q7LVpY_wgOThc19wlcgAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-02 03:55:25
(1 week ago)
B: f2b 404 5x
Web App Attack
πΉπ·
Detmach
2026-06-02 03:26:07
(1 week ago)
Security attack detected. Multiple failed attempts from 48.214.55.51. IP banned for 1440 minutes at ...
show more
Security attack detected. Multiple failed attempts from 48.214.55.51. IP banned for 1440 minutes at 02.06.2026 06:26:00. Failed attempts: 1
show less
Brute-Force
πΊπΈ
RAP
2026-06-02 03:16:57
(1 week ago)
2026-06-02 03:16:57 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan
Web App Attack
πΉπ·
Threat.live
2026-06-02 03:00:12
(1 week ago)
Suspicious Connection Attempts
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-02 02:51:21
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 48.214.55.51 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 48.214.55.51 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 22:51:14.365440 2026] [security2:error] [pid 8361:tid 8361] [client 48.214.55.51:48662] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.74"] [uri "/.git/HEAD"] [unique_id "ah5FIvplefBwIc-1xr2q6QAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π·πΈ
Scan
2026-06-02 02:11:02
(1 week ago)
MultiHost/MultiPort Probe, Scan, Hack -
Port Scan
Hacking
π©πͺ
gadix
2026-06-02 01:36:53
(1 week ago)
[02/Jun/2026:03:36:45.704800 +0200] ah4zrVu-XoY-R-M-0OK-VQAAAIc 48.214.55.51 39900 127.0.0.1 7081
[0 ...
show more
[02/Jun/2026:03:36:45.704800 +0200] ah4zrVu-XoY-R-M-0OK-VQAAAIc 48.214.55.51 39900 127.0.0.1 7081
[02/Jun/2026:03:36:46.773055 +0200] ah4zrlu-XoY-R-M-0OK-VgAAAJc 48.214.55.51 39908 127.0.0.1 7081
[02/Jun/2026:03:36:48.045539 +0200] ah4zsEUL6_prfRfYDrfcBwAAAMA 48.214.55.51 46616 127.0.0.1 7080
...
show less
Web App Attack