πΊπΈ
shabi
2026-04-11 08:50:33
(5 months ago)
UFW Blocked [8004/TCP]
Source: 82.147.85.36:56310
TTL: 246
Lenth: 44
TOS: 0x00
Port Scan
πΊπΈ
TPI-Abuse
2026-04-06 09:23:06
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 05:23:02.704764 2026] [security2:error] [pid 3799:tid 3799] [client 82.147.85.36:49138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.coinbracelet.com"] [uri "/.git/HEAD"] [unique_id "adN7doRAzJ354P0Ts7s9RAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΉπ·
rtbh.com.tr
2026-03-24 20:12:15
(6 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
πΉπ·
rtbh.com.tr
2026-03-23 20:12:13
(6 months ago)
list.rtbh.com.tr report: tcp/0
Brute-Force
π©πͺ
ghostwarriors
2026-03-22 11:20:10
(6 months ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
π©πͺ
2048
2026-03-21 13:49:03
(6 months ago)
2026-03-21T14:48:57.811547+01:00 machodeer kernel: [2357756.946430] [UFW BLOCK] IN=ens3 OUT= MAC=RED ...
show more
2026-03-21T14:48:57.811547+01:00 machodeer kernel: [2357756.946430] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=82.147.85.36 DST=REDACTED LEN=40 TOS=0x00 PREC=0x20 TTL=247 ID=45173 PROTO=TCP SPT=40895 DPT=8001 WINDOW=1024 RES=0x00 SYN URGP=0
2026-03-21T14:49:01.824005+01:00 machodeer kernel: [2357760.958734] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=82.147.85.36 DST=REDACTED LEN=40 TOS=0x00 PREC=0x20 TTL=247 ID=62989 PROTO=TCP SPT=40895 DPT=4002 WINDOW=1024 RES=0x00 SYN URGP=0
2026-03-21T14:49:02.668226+01:00 machodeer kernel: [2357761.802776] [UFW BLOCK] IN=ens3 OUT= MAC=REDACTED SRC=82.147.85.36 DST=REDACTED LEN=40 TOS=0x00 PREC=0x20 TTL=247 ID=53233 PROTO=TCP SPT=40895 DPT=8003 WINDOW=1024 RES=0x00 SYN URGP=0
show less
Port Scan
πΊπΈ
TPI-Abuse
2026-03-21 11:24:23
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 21 07:24:16.542060 2026] [security2:error] [pid 1034:tid 1034] [client 82.147.85.36:36114] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.coinbracelet.com"] [uri "/backend/.env"] [unique_id "ab5_4EO766C___dVWkUdUAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
masterguru
2026-03-19 12:25:32
(6 months ago)
Found User-Agent associated with security scanner. Matched phrase "Fuzz Faster U Fool" at REQUEST_HE ...
show more
Found User-Agent associated with security scanner. Matched phrase "Fuzz Faster U Fool" at REQUEST_HEADERS:User-Agent. (913100-135)
show less
Hacking
Bad Web Bot
π©πͺ
XICTRON
2026-03-19 12:10:06
(6 months ago)
ModSecurity rule violation detected by Fail2Ban
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-10 21:13:53
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 10 17:13:45.207083 2026] [security2:error] [pid 2838:tid 2838] [client 82.147.85.36:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kryptonome.com"] [uri "/.git/HEAD"] [unique_id "abCJiciK2MmjJp4tHsoMGgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
heterodyna.pl
2026-03-10 20:10:55
(6 months ago)
Skan 404/probe: /.git/HEAD
URL: /.git/HEAD
UA: Fuzz Faster U Fool v2.1.0-dev
Brute-Force
Web App Attack
π§πͺ
madeit
2026-03-03 19:48:04
(6 months ago)
Web App Attack
π©πͺ
wp1web.com
2026-03-03 19:44:01
(6 months ago)
git-head - Attack from 82.147.85.36 (Novosibirsk; RUS; 82-147-85-36.vpsdedic.ru) - collected by dock ...
show more
git-head - Attack from 82.147.85.36 (Novosibirsk; RUS; 82-147-85-36.vpsdedic.ru) - collected by docker http-honeypot
show less
Brute-Force
Web App Attack
πΊπΈ
TPI-Abuse
2026-03-03 19:32:18
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in t ...
show more
(mod_security) mod_security (id:210492) triggered by 82.147.85.36 (82-147-85-36.vpsdedic.ru): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Mar 03 14:32:09.088491 2026] [security2:error] [pid 3701:tid 3701] [client 82.147.85.36:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ipv6.dentguyvt.com"] [uri "/.git/HEAD"] [unique_id "aac3OVgzttKWbjK5fPgQzgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
mnsf
2026-03-03 15:05:23
(6 months ago)
Too many Status 40X (12)
Scanning/Probing (13)
Brute-Force
Web App Attack