๐ณ๐ฑ
homeshowdomain.nl
2026-07-31 21:59:55
(5 hours ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-07-30.
show less
Web App Attack
SSH
Hacking
๐ฎ๐น
IRT@Unisi
2026-07-31 17:45:23
(9 hours ago)
Multiple web server 400 error codes from same source ip.
Bad Web Bot
๐ฟ๐ฆ
conure
2026-07-31 12:12:45
(14 hours ago)
csagent: score 20.0: secrets grab x2; 2 domain(s) in 0s
Web App Attack
๐ฎ๐ณ
evicky2002
2026-07-31 06:00:00
(21 hours ago)
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
Anonymous
2026-07-30 22:40:38
(1 day ago)
Portscan: TCP/80 (4x), TCP/443 (4x)
Port Scan
๐บ๐ฆ
URAN Publishing Service
2026-07-30 22:37:34
(1 day ago)
87.99.136.66 - - [31/Jul/2026:01:37:33 +0300] "GET /.git/config HTTP/1.1" 301 580 "-" "Mozilla/5.0 ( ...
show more
87.99.136.66 - - [31/Jul/2026:01:37:33 +0300] "GET /.git/config HTTP/1.1" 301 580 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:128.0) Gecko/20100101 Firefox/128.0"
...
show less
Web App Attack
๐ฌ๐ง
SilverZippo
2026-07-30 22:37:30
(1 day ago)
Web App Attack
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-30 22:28:34
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 87.99.136.66 (static.66.136.99.87.clients.your- ...
show more
(mod_security) mod_security (id:210492) triggered by 87.99.136.66 (static.66.136.99.87.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 18:28:30.197422 2026] [security2:error] [pid 1812870:tid 1812870] [client 87.99.136.66:18284] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wokedreamer.com"] [uri "/.git/config"] [unique_id "amvQDnG6obSIPHkCkc8uqgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
stinpriza
2026-07-30 22:22:08
(1 day ago)
common Web Exploits being scanned
Web App Attack
๐ฉ๐ช
Lino Project
2026-07-30 22:19:34
(1 day ago)
87.99.136.66 - - [31/Jul/2026:00:19:31 +0200] "GET /.git/config HTTP/1.1" 403 344 "-" "Mozilla/5.0 ( ...
show more
87.99.136.66 - - [31/Jul/2026:00:19:31 +0200] "GET /.git/config HTTP/1.1" 403 344 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 Chrome/131.0.0.0"
...
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Tsumugi Kotobuki
2026-07-30 22:12:42
(1 day ago)
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 50 | Len: 60B | Win: ...
show more
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 50 | Len: 60B | Win: 64240(1) | rDNS: static.66.136.99.87.clients.your-server.de | F2B/ufw-honeypot@2026-07-30T22:12:41Z
show less
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-07-30 22:12:31
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 87.99.136.66 (static.66.136.99.87.clients.your- ...
show more
(mod_security) mod_security (id:210492) triggered by 87.99.136.66 (static.66.136.99.87.clients.your-server.de): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jul 30 18:12:26.919006 2026] [security2:error] [pid 4088928:tid 4088928] [client 87.99.136.66:19566] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cuisine.gevieworld.com"] [uri "/.git/config"] [unique_id "amvMSlHYds8qUTDRBdHSNgAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐จ๐ญ
4server
2026-07-30 22:11:59
(1 day ago)
[FriJul3100:11:55.9221232026][security2:error][pid224565:tid224941][client87.99.136.66:0]ModSecurity ...
show more
[FriJul3100:11:55.9221232026][security2:error][pid224565:tid224941][client87.99.136.66:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"365\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"aidweb.ch\"][uri\"/.git/config\"][unique_id\"amvMK79yEDiBpBnNYnBfngAAAQE\"]
show less
Hacking
Web App Attack
๐น๐ญ
MWA SOC
2026-07-30 22:09:02
(1 day ago)
Hacking
๐ซ๐ท
mail.avx.gr
2026-07-30 22:06:11
(1 day ago)
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 87.99.136.66 - - [31/Jul/2026:01:06:11 +0300] "GE ...
show more
Plesk Fail2Ban jail: Plesk-Web-Exploits. Evidence: 87.99.136.66 - - [31/Jul/2026:01:06:11 +0300] "GET /.git/config HTTP/1.1" 301 162 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 Chrome/131.0.0.0"
show less
Web App Attack