๐ฉ๐ช
pltcldvlpr
2026-09-19 14:09:20
(52 minutes ago)
CMS/framework probe: 82.118.29.214 - - [19/Sep/2026:16:09:19 +0200] "GET /_profiler/phpinfo HTTP/1.1 ...
show more
CMS/framework probe: 82.118.29.214 - - [19/Sep/2026:16:09:19 +0200] "GET /_profiler/phpinfo HTTP/1.1" 301 178 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0" asn=206092 org="F.N.S. HOLDINGS LIMITED" country=SE
...
show less
Web App Attack
๐บ๐ธ
Charlesiv
2026-09-19 10:00:33
(5 hours ago)
Triggered Cloudflare WAF (firewallCustom) from SE.
Action taken: BLOCK
ASN: 206092 (F.N.S. HOLDINGS ...
show more
Triggered Cloudflare WAF (firewallCustom) from SE.
Action taken: BLOCK
ASN: 206092 (F.N.S. HOLDINGS LIMITED)
Protocol: HTTP/1.1 (POST method)
Endpoint: /
Timestamp: 2026-09-19T09:48:39Z
Ray ID: a3d7ad0cd9a0618c
UA: python-requests/2.32.5
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-09-19 08:16:10
(6 hours ago)
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 19 04:16:04.083959 2026] [security2:error] [pid 10569:tid 10569] [client 82.118.29.214:47137] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wearywillie.com"] [uri "/.git/config"] [unique_id "aq5ExDDpsXsm6fyORAKDuQAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-19 08:54:01
(1 month ago)
FPROCO WEBFORM SPAM 82.118.29.214 (82.118.29.214)
Web Spam
Anonymous
2026-07-17 05:02:52
(2 months ago)
[email.tmg.gr] wp-login-spray-user: sites=tmg.gr; samples=target_user=tmgnikos | distinct_ips=16 | t ...
show more
[email.tmg.gr] wp-login-spray-user: sites=tmg.gr; samples=target_user=tmgnikos | distinct_ips=16 | total_fails=41
show less
Hacking
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-07-07 06:51:16
(2 months ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐ช
AutosOnShow
2026-06-28 19:19:07
(2 months ago)
blocked for webapp attack | path requested: /.git/config | seen at 2026-06-28 19:18:08.546 |
Web App Attack
Anonymous
2026-06-27 15:54:05
(2 months ago)
Web App Attack
Brute-Force
Exploited Host
Web App Attack
๐ฌ๐ง
Smish
2026-06-27 11:58:47
(2 months ago)
HONEYPOT HIT --> Fail2ban time=1782561527 log=2026-06-27T12:58:47+01:00 ip=82.118.29.214 host=direct ...
show more
HONEYPOT HIT --> Fail2ban time=1782561527 log=2026-06-27T12:58:47+01:00 ip=82.118.29.214 host=direct.smishcraft.com method=GET uri="/.env.local" status=404 ua="Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 Chrome/124.0.0.0 Safari/537.36" ref="-" rid=d579ca827303c04273cf4d036bd98ac9
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 11:35:27
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 07:35:15.562177 2026] [security2:error] [pid 5932:tid 5932] [client 82.118.29.214:57677] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.gitignore" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.johneiden.com"] [uri "/.gitignore"] [unique_id "aj-1c3vFZ-Rm5lwMK8Y3ugAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 10:56:14
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210730) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 06:56:01.417941 2026] [security2:error] [pid 29163:tid 29163] [client 82.118.29.214:36513] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||heytechiesshow.com|F|2"] [data ".ini"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "heytechiesshow.com"] [uri "/database.ini"] [unique_id "aj-sQQ9yv6O7gJjIG0WdKwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 10:28:28
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 06:28:10.084866 2026] [security2:error] [pid 19602:tid 19602] [client 82.118.29.214:55355] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.lyounglaw.com"] [uri "/.env.local"] [unique_id "aj-lukCxlUUaIOzqdxuO9AAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-27 07:56:24
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 82.118.29.214 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 27 03:55:56.792754 2026] [security2:error] [pid 4310:tid 4310] [client 82.118.29.214:40393] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.iwsa.info"] [uri "/.git/description"] [unique_id "aj-CDDLh5XZ85h7IC6AYKAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
Marten Mark
2026-06-27 06:16:37
(2 months ago)
82.118.29.214 - - [27/Jun/2026:06:16:36 +0000] "GET /.env.development HTTP/1.1" 404 150 "-" "Mozilla ...
show more
82.118.29.214 - - [27/Jun/2026:06:16:36 +0000] "GET /.env.development HTTP/1.1" 404 150 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:125.0) Gecko/20100101 Firefox/125.0"
...
show less
Web App Attack
Bad Web Bot
๐ฉ๐ช
Mykola Spesivtsev
2026-06-27 05:25:40
(2 months ago)
HTTP Tarpit detected bot activity:TargetPort:80, Path:/config/config.json, Method:GET, UA:Mozilla/5. ...
show more
HTTP Tarpit detected bot activity:TargetPort:80, Path:/config/config.json, Method:GET, UA:Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 Chrome/124.0.0.0 Safari/537.36
show less
Port Scan
Web App Attack
Bad Web Bot