Honeypot detection: Elasticsearch unauthorized access / data leak attempt on port 9200. Severity: ME ...
show moreHoneypot detection: Elasticsearch unauthorized access / data leak attempt on port 9200. Severity: MEDIUM. Aaran.cloud
show less
Honeypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. A ...
show moreHoneypot detection: Web application scanning / reconnaissance attempt on port 8080. Severity: LOW. Aaran.cloud
show less
[MonMay1100:11:33.7548172026][security2:error][pid1579144:tid1579254][client65.111.4.40:0]ModSecurit ...
show more[MonMay1100:11:33.7548172026][security2:error][pid1579144:tid1579254][client65.111.4.40:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"assmra.org\"][uri\"/wp-json/gravitysmtp/v1/tests/mock-data\"][unique_id\"agEClT-cMhcVAd27ivSPwQAAAMI\"]
show less
ThreatBook Intelligence: http_proxy,Zombie more details on https://threatbook.io/ip/65.111.4.40
2026 ...
show moreThreatBook Intelligence: http_proxy,Zombie more details on https://threatbook.io/ip/65.111.4.40
2026-04-17 06:50:35 /book/index.php?c=search&catid=23%20and%20(select%201%20from%20(select%20count(*),concat(md5(1),floor(rand(0)*2))x%20from%20information_schema.tables%20group%20by%20x)a)
2026-04-17 07:37:45 /video/index.php?c=search&catid=23%20and%20(select%201%20from%20(select%20count(*),concat(md5(1),floor(rand(0)*2))x%20from%20information_schema.tables%20group%20by%20x)a)
show less
Bot / scanning and/or hacking attempts: GET /.env.save HTTP/1.1, GET /wp/.git/config HTTP/1.1, GET / ...
show moreBot / scanning and/or hacking attempts: GET /.env.save HTTP/1.1, GET /wp/.git/config HTTP/1.1, GET /app/.env HTTP/1.1, GET /.env.production HTTP/1.1, GET /v2/.git/config HTTP/1.1, GET /frontend/.env HTTP/1.1, GET /admin/.env HTTP/1.1, GET /app/.git/config HTTP/1.1, GET /.env.staging HTTP/1.1, GET /dev/.git/config HTTP/1.1, GET /.env.local HTTP/1.1, GET /backend/.env HTTP/1.1, GET /test/.git/config HTTP/1.1, GET /.git/config HTTP/1.1, GET /admin/.git/config HTTP/1.1, GET /api/.env HTTP/1.1, GET /config/.env HTTP/1.1
show less
Hacking
Web App Attack
Showing 1 to
15
of 50 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ