๐ซ๐ท
SpaceHost-Server
2026-04-27 07:25:44
(4 months ago)
142.93.205.218 - - [27/Apr/2026:09:24:21 +0200] "POST /wp-login.php HTTP/1.1" 200 14612 "-" "Mozilla ...
show more
142.93.205.218 - - [27/Apr/2026:09:24:21 +0200] "POST /wp-login.php HTTP/1.1" 200 14612 "-" "Mozilla/5.0"
142.93.205.218 - - [27/Apr/2026:09:24:58 +0200] "POST /wp-login.php HTTP/1.1" 200 14612 "-" "Mozilla/5.0"
142.93.205.218 - - [27/Apr/2026:09:25:42 +0200] "POST /wp-login.php HTTP/1.1" 200 14612 "-" "Mozilla/5.0"
show less
Hacking
Web App Attack
๐ฉ๐ช
netclix.gr
2026-04-27 07:25:05
(4 months ago)
(wordpress) Failed wordpress login from 142.93.205.218 (US/United States/-): (CF_ENABLE)
Brute-Force
๐ฉ๐ช
neverdown.eu
2026-04-27 07:24:17
(4 months ago)
(wordpress) Failed WordPress login from 142.93.205.218 (US/United States/-): 5 in the last 60 secs; ...
show more
(wordpress) Failed WordPress login from 142.93.205.218 (US/United States/-): 5 in the last 60 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: 142.93.205.218 - - [27/Apr/2026:10:23:47 +0300] "POST /wp-login.php HTTP/1.1" 200 10075 "-" "Mozilla/5.0"
142.93.205.218 - - [27/Apr/2026:10:23:47 +0300] "POST /wp-login.php HTTP/1.1" 200 10067 "-" "Mozilla/5.0"
142.93.205.218 - - [27/Apr/2026:10:23:47 +0300] "POST /wp-login.php HTTP/1.1" 200 10061 "-" "Mozilla/5.0"
142.93.205.218 - - [27/Apr/2026:10:23:47 +0300] "POST /wp-login.php HTTP/1.1" 200 10057 "-" "Mozilla/5.0"
142.93.205.218 - - [27/Apr/2026:10:23:47 +0300] "POST /wp-login.php HTTP/1.1" 200 10071 "-" "Mozilla/5.0"
show less
Port Scan
๐ซ๐ท
masterguru
2026-04-27 07:22:29
(4 months ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 142.93.205.218 (US/United States/-): ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 142.93.205.218 (US/United States/-): 1 in the last 3600 secs (0-195)
show less
Hacking
Anonymous
2026-04-27 07:03:06
(4 months ago)
142.93.205.218 - - [27/Apr/2026:07:03:05 +0000] "GET /wp-login.php HTTP/1.1" 404 2955 "-" "Mozilla/5 ...
show more
142.93.205.218 - - [27/Apr/2026:07:03:05 +0000] "GET /wp-login.php HTTP/1.1" 404 2955 "-" "Mozilla/5.0"
...
show less
Bad Web Bot
Web App Attack
๐จ๐ณ
ThreatBook.io
2026-04-21 23:17:17
(4 months ago)
2026-04-21 01:00:53 /.git/config
Web App Attack
๐จ๐ฆ
lakered
2026-04-20 21:43:07
(4 months ago)
Honeypot Lakered: Direct_IP_access_attempt__no_hostname_. IP automatically banned.
Port Scan
Exploited Host
๐ฉ๐ช
Starburst SysOp Team
2026-04-20 21:17:28
(4 months ago)
Host header is a numeric IP address. Pattern match "(?:^( (920350-nue6-1)
Hacking
Bad Web Bot
๐ณ๐ฑ
oisecnet
2026-04-20 21:01:42
(4 months ago)
Automated report: Unauthorized vulnerability scanning detected on 2026-04-20. 9 requests from this I ...
show more
Automated report: Unauthorized vulnerability scanning detected on 2026-04-20. 9 requests from this IP.
show less
Brute-Force
Web App Attack
SSH
๐ฉ๐ช
kivitendo.de
2026-04-20 20:36:19
(4 months ago)
[Mon Apr 20 19:07:51.200380 2026] [access_compat:error] [pid 814810:tid 814848] [client 142.93.205.2 ...
show more
[Mon Apr 20 19:07:51.200380 2026] [access_compat:error] [pid 814810:tid 814848] [client 142.93.205.218:34484] AH01797: client denied by server configuration: /var/www/kivitendo-erp/.git/config
[Mon Apr 20 22:36:25.544004 2026] [access_compat:error] [pid 814811:tid 814864] [client 142.93.205.218:35110] AH01797: client denied by server configuration: /var/www/kivitendo-erp/.git/config
...
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
knock
2026-04-20 20:35:28
(4 months ago)
Knock-Knock honeypot brute-force: proto8 (6 total hits)
Brute-Force
๐ญ๐ท
IgorS.zg.hr
2026-04-20 20:17:30
(4 months ago)
Web application attack detected by fail2ban
Hacking
Web App Attack
๐ฌ๐ง
Interceptor_HQ
2026-04-20 19:14:19
(4 months ago)
request_uri: /.git/config -- automatic report --
Brute-Force
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-20 18:54:52
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 142.93.205.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.205.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 14:54:45.965985 2026] [security2:error] [pid 13083:tid 13083] [client 142.93.205.218:54546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.96"] [uri "/.git/config"] [unique_id "aeZ2dftqcgFOV4IpgVWO_gAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-20 17:55:29
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 142.93.205.218 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 142.93.205.218 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 20 13:55:22.297985 2026] [security2:error] [pid 2964067:tid 2964067] [client 142.93.205.218:52204] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.215"] [uri "/.git/config"] [unique_id "aeZoioQiy030LfDjrdni7AAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack