๐ซ๐ท
Dorian GRANDHAY
2026-09-01 12:27:01
(13 hours ago)
(PERMBLOCK) 74.7.241.35 (US/United States/-) has had more than 4 temp blocks in the last 604800 secs ...
show more
(PERMBLOCK) 74.7.241.35 (US/United States/-) has had more than 4 temp blocks in the last 604800 secs; Ports: *; Direction: inout; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
Port Scan
๐ซ๐ท
masterguru
2026-09-01 05:36:07
(20 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.241.35 (US/United States/-): 1 i ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 74.7.241.35 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
๐ณ๐ฑ
Site.eu
2026-08-31 02:31:27
(1 day ago)
Excessive multi-domain requests
Brute-Force
๐ซ๐ท
Octopuce
2026-08-28 18:07:41
(4 days ago)
Aggressive web search of vulnerable pages: /en/a-about-de/ /french/ /%22http:/www.basemap.at/ /%22ht ...
show more
Aggressive web search of vulnerable pages: /en/a-about-de/ /french/ /%22http:/www.basemap.at/ /%22http:/viewfinderpanoramas.org/ /%22http:/www. ...
show less
Web App Attack
๐ช๐ธ
librebit
2026-08-28 12:44:50
(4 days ago)
Brute force
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-28 09:16:02
(4 days ago)
(mod_security) mod_security (id:225170) triggered by 74.7.241.35 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 74.7.241.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 28 05:15:58.648545 2026] [security2:error] [pid 23259:tid 23259] [client 74.7.241.35:35094] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||rotentendales.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "rotentendales.com"] [uri "/wp-json/wp/v2/users/2"] [unique_id "apFRzn84YX_99cPdoHQn2gAAAA4"], referer: https://rotentendales.com/author/janaveira/
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-27 23:40:08
(5 days ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: nexus.budyn.top | URI: /backup.sql | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ซ๐ฎ
paissangroup
2026-08-26 18:56:21
(6 days ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-24 00:39:33
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-24 00:11:10
(1 week ago)
(mod_security) mod_security (id:210730) triggered by 74.7.241.35 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:210730) triggered by 74.7.241.35 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 23 20:11:03.176286 2026] [security2:error] [pid 14184:tid 14184] [client 74.7.241.35:56748] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||alexgitlin.com|F|2"] [data ".thehighwaystar.com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "alexgitlin.com"] [uri "/npp/www.thehighwaystar.com"] [unique_id "aouMF0fwdf6h8okSKENtlQAAACM"], referer: http://alexgitlin.com/npp/silverhead.htm
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-21 05:29:29
(1 week ago)
Excessive multi-domain requests
Brute-Force
๐ช๐ธ
masterguru
2026-08-20 00:51:47
(1 week ago)
BAD BOT - Detected and Blocked.. Matched phrase "GPTBot" at REQUEST_HEADERS:user-agent. (1100000-122 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "GPTBot" at REQUEST_HEADERS:user-agent. (1100000-122)
show less
Bad Web Bot
๐ฉ๐ช
jbcrn
2026-08-19 22:06:05
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Request ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: OpenAI, ruleset: ai.robots.txt. Requested honeypot path: /deflagration.bismutoplagionite-trieterics/questful/excerpt-downswing/miscipher/unjellied/tenebra/legal/kernelly/launch-sesquiquarta/untasting-gotten/Thyraden/spirket/sensationalist-news/paragraphic/Antu/Hapale/Muriel/Formicinae/Fiberglas/infester/exuviate/adopt-prejudicious/arapaima/cusinero-goodheartedly/pinnular/cauld/book-impersonality/Uria/unrestable/upsettingly/mottling-attercop/ethically/vacona/squarrose-reversal/snooper/strideways/racialism/slorp-undutiful/thyreotomy/gerefa/richt-nonreproductive/soredial/hesperiid-rathe/signalee/religiose-Lunulites/pinnula/twiningly/impetre-arsenophagy/aurure/bolide-Conemaugh/cashkeeper/squeezy/Squalidae/whenceeer-oenologist/assish-tetrarchate/urao/recapitulator-ebonite/muley/forum/pseudomedical/es/orange-Gomorrhean/cheki-enfiladi
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-19 21:59:48
(1 week ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: dev.budyn.top | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
๐ต๐ฑ
Budyn
2026-08-18 15:50:31
(2 weeks ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicio ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: WP Path Scanning (Recon). Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: pma.definitelynotahoneypot.online | URI: /xmlrpc.php?rsd | UA: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; GPTBot/1.4; +https://openai.com/gptbot) | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack