๐ง๐ช
madeit
2026-08-24 19:31:32
(1 day ago)
Web App Attack
๐ง๐ช
madeit
2026-08-13 16:32:06
(1 week ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-28 06:57:08
(4 weeks ago)
(mod_security) mod_security (id:210730) triggered by 108.162.241.46 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 108.162.241.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jul 28 02:57:03.940374 2026] [security2:error] [pid 1442135:tid 1442135] [client 108.162.241.46:12261] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.plattlawgroup.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.plattlawgroup.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "amhSv3JvFIKQfWM8MP6VJAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฎ๐น
IRT@Unisi
2026-07-21 22:26:29
(1 month ago)
anomaly:tcp_dst_session,1001>threshold1000,repeats376timessincelastlog
DDoS Attack
Anonymous
2026-07-16 23:43:08
(1 month ago)
108.162.241.46 - - [16/Jul/2026:23:43:04 +0000] "GET /wefile.php HTTP/2.0" 404 4052 "-" "-" "20.220. ...
show more
108.162.241.46 - - [16/Jul/2026:23:43:04 +0000] "GET /wefile.php HTTP/2.0" 404 4052 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:04 +0000] "GET /makeasmtp.php?p= HTTP/2.0" 404 4056 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:05 +0000] "GET /2P.php HTTP/2.0" 404 4049 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:05 +0000] "GET /.well-known/about.php HTTP/2.0" 404 4059 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:05 +0000] "GET /wp-includes/ID3/about.php HTTP/2.0" 404 4063 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:05 +0000] "GET /system_log.php HTTP/2.0" 404 4050 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:06 +0000] "GET /crgio.php HTTP/2.0" 404 4051 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:07 +0000] "GET /pucci.php HTTP/2.0" 404 4051 "-" "-" "20.220.9.199"
108.162.241.46 - - [16/Jul/2026:23:43:08 +0000] "GET /wp-temp.php HTTP/2.0" 404 4052 "-" "-" "20.220.9.199"
108.16
...
show less
Port Scan
Brute-Force
๐จ๐ญ
filou812
2026-06-21 15:45:37
(2 months ago)
url tried is "/signup"
Web App Attack
Anonymous
2026-06-21 07:10:34
(2 months ago)
108.162.241.46 - - [21/Jun/2026:07:10:29 +0000] "GET /wp-content/plugins/hellopress/wp_filemanager.p ...
show more
108.162.241.46 - - [21/Jun/2026:07:10:29 +0000] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/2.0" 404 4074 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:29 +0000] "GET /x.php HTTP/2.0" 404 4048 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:30 +0000] "GET /cxs.php HTTP/2.0" 404 4051 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:30 +0000] "GET /asdf.php HTTP/2.0" 404 4050 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:32 +0000] "GET /zoro.php HTTP/2.0" 404 4051 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:32 +0000] "GET /bajah.php HTTP/2.0" 404 4052 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:33 +0000] "GET /lim.php HTTP/2.0" 404 4049 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:34 +0000] "GET /heat3.php HTTP/2.0" 404 4051 "-" "-" "20.104.75.74"
108.162.241.46 - - [21/Jun/2026:07:10:34 +0000] "GET /greap.php HTTP/2.0" 404 4052 "-" "-" "20.104.75.74"
108.162.241.46 -
...
show less
Port Scan
Brute-Force
๐ณ๐ฑ
homeshowdomain.nl
2026-06-10 22:01:41
(2 months ago)
Auto-ban: >3000 req/min op 2026-06-10
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-01 10:22:27
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 108.162.241.46 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 108.162.241.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 01 06:22:21.954331 2026] [security2:error] [pid 17602:tid 17602] [client 108.162.241.46:12352] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||autodiscover.desertvacationvillas.com|F|2"] [data "[email protected] "] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "autodiscover.desertvacationvillas.com"] [uri "/autodiscover/autodiscover.json/v1.0/[email protected] "] [unique_id "ah1dXZRXmbH28NPbTIpKTAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-28 16:15:25
(2 months ago)
108.162.241.46 - - [28/May/2026:18:15:17 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.p ...
show more
108.162.241.46 - - [28/May/2026:18:15:17 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 243 "-" "-"
108.162.241.46 - - [28/May/2026:18:15:17 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 436 "-" "-"
108.162.241.46 - - [28/May/2026:18:15:22 +0200] "GET /wp-includes/blocks/post-comments-form/ HTTP/1.1" 404 436 "-" "-"
108.162.241.46 - - [28/May/2026:18:15:22 +0200] "GET /wp-includes/blocks/post-comments-form/ HTTP/1.1" 404 243 "-" "-"
108.162.241.46 - - [28/May/2026:18:15:25 +0200] "GET /wp-includes/ID3/about.php HTTP/1.1" 404 436 "-" "-"
...
show less
Brute-Force
Web App Attack
Anonymous
2026-05-26 12:04:37
(3 months ago)
108.162.241.46 - - [26/May/2026:14:04:37 +0200] "GET //test/wp-includes/wlwmanifest.xml HTTP/1.0" 40 ...
show more
108.162.241.46 - - [26/May/2026:14:04:37 +0200] "GET //test/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
108.162.241.46 - - [26/May/2026:14:04:37 +0200] "GET //test/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
108.162.241.46 - - [26/May/2026:14:04:37 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
108.162.241.46 - - [26/May/2026:14:04:37 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36"
108.162.241.46 - - [26/May/2026:14:04:37 +0200] "GET //cms/wp-includes/wlwmanifest.xml HTTP/
...
show less
Brute-Force
Web App Attack
Anonymous
2026-05-09 20:18:34
(3 months ago)
108.162.241.46 - - [09/May/2026:22:18:33 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.0" 40 ...
show more
108.162.241.46 - - [09/May/2026:22:18:33 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
108.162.241.46 - - [09/May/2026:22:18:33 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
108.162.241.46 - - [09/May/2026:22:18:33 +0200] "GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
108.162.241.46 - - [09/May/2026:22:18:33 +0200] "GET //cms/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36"
108.162.241.46 - - [09/May/2026:22:18:33 +0200] "GET //sito/wp-includes/wlwmanifest.xml HT
...
show less
Brute-Force
Web App Attack
Anonymous
2026-04-23 10:20:11
(4 months ago)
108.162.241.46 - - [23/Apr/2026:12:20:10 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.0" 40 ...
show more
108.162.241.46 - - [23/Apr/2026:12:20:10 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [23/Apr/2026:12:20:10 +0200] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [23/Apr/2026:12:20:10 +0200] "GET //cms/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [23/Apr/2026:12:20:10 +0200] "GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [23/Apr/2026:12:20:10 +0200] "GET //sito/wp-includes/wlwmanifest.xml HT
...
show less
Brute-Force
Web App Attack
Anonymous
2026-04-16 02:23:23
(4 months ago)
108.162.241.46 - - [16/Apr/2026:04:23:22 +0200] "GET //news/wp-includes/wlwmanifest.xml HTTP/1.0" 40 ...
show more
108.162.241.46 - - [16/Apr/2026:04:23:22 +0200] "GET //news/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [16/Apr/2026:04:23:22 +0200] "GET //news/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [16/Apr/2026:04:23:23 +0200] "GET //2018/wp-includes/wlwmanifest.xml HTTP/1.0" 404 455 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [16/Apr/2026:04:23:23 +0200] "GET //2018/wp-includes/wlwmanifest.xml HTTP/1.1" 404 243 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
108.162.241.46 - - [16/Apr/2026:04:23:23 +0200] "GET //2019/wp-includes/wlwmanifest.xml
...
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 23:53:31
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 108.162.241.46 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 108.162.241.46 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 19:53:24.440509 2026] [security2:error] [pid 1594310:tid 1594310] [client 108.162.241.46:12351] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "faw.us"] [uri "/.env.save"] [unique_id "adWY9OhXOv1CxSEx3bMIfAAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack