Anonymous
2026-09-06 17:24:37
(3 hours ago)
IP matched detection query 20 more in short time bad rqs.
Brute-Force
Web App Attack
Hacking
🇩🇪
ghostwarriors
2026-09-06 07:50:13
(12 hours ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-06 03:21:54
(17 hours ago)
Banned by Fail2Ban on server
Web App Attack
🇺🇸
TPI-Abuse
2026-08-21 04:16:50
(2 weeks ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 00:16:45.210059 2026] [security2:error] [pid 22473:tid 22473] [client 146.112.163.52:13953] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.nordicbuilders.net|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.nordicbuilders.net"] [uri "/wp-content/uploads/2019/03/NB01-1280x320.jpg"] [unique_id "aofRLaoFbhNDW7k63phEYgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇬🇧
gigatech
2026-08-19 02:45:03
(2 weeks ago)
Webserver Probing
Web App Attack
🇳🇱
Cloud86 B.V.
2026-08-18 04:52:04
(2 weeks ago)
categories: DDoS Attack
DDoS Attack
🇩🇪
grassau.com
2026-08-13 02:31:00
(3 weeks ago)
*Port Scan* detected from 146.112.163.52 (US/United States/Virginia/Reston/-).
Port Scan
🇬🇧
ISPLtd
2026-08-04 08:00:46
(1 month ago)
146.112.163.52 - - [04/Aug/2026:05:00:45 -0300] "GET /wp-content/fonts/poppins/pxiByp8kv8JHgFVrLEj6Z ...
show more
146.112.163.52 - - [04/Aug/2026:05:00:45 -0300] "GET /wp-content/fonts/poppins/pxiByp8kv8JHgFVrLEj6Z1xlFQ.woff2
146.112.163.52 - - [04/Aug/2026:05:00:45 -0300] "GET /wp-content/themes/superb-ecommerce/fonts/fontawesome-webfont.woff2?v=4.7.0
...
show less
Hacking
Web App Attack
🇺🇸
azminawwar
2026-08-01 02:27:23
(1 month ago)
[146.112.163.52] triggered by honeypot on port [80], Timestamp [2026-08-01T02:27:23Z]METHOD=GET PATH ...
show more
[146.112.163.52] triggered by honeypot on port [80], Timestamp [2026-08-01T02:27:23Z]METHOD=GET PATH=/ HTTP=HTTP/1.1 UA="Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/1
show less
Port Scan
Hacking
🇦🇺
Bay13
2026-07-25 02:36:44
(1 month ago)
CrowdSec:custom/http-probing
Web App Attack
🇮🇹
VHosting
2026-07-16 00:05:03
(1 month ago)
Detected WordPress attack from 4 different servers
Brute-Force
Web App Attack
🇺🇸
TPI-Abuse
2026-07-04 03:36:06
(2 months ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jul 03 23:36:00.752741 2026] [security2:error] [pid 25639:tid 25639] [client 146.112.163.52:50757] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.monogay.org|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.monogay.org"] [uri "/wp-content/themes/catch-everest-pro/images/favicon.ico"] [unique_id "akh_oGbS2Y_h5Ye6Sc9Q-QAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-07-02 03:51:32
(2 months ago)
(mod_security) mod_security (id:210730) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jul 01 23:51:25.862612 2026] [security2:error] [pid 24691:tid 24691] [client 146.112.163.52:39671] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "4"] [msg "COMODO WAF: URL file extension is restricted by policy||www.fractalsky.com|F|2"] [data ".com"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.fractalsky.com"] [uri "/blackhorrormovie.com"] [unique_id "akXgPd43zs5RgxzF-y3sowAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-22 04:41:04
(2 months ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 22 00:40:58.553573 2026] [security2:error] [pid 17789:tid 17789] [client 146.112.163.52:14249] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||karenbernsteinlaw.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "karenbernsteinlaw.com"] [uri "/wp-content/plugins/j-shortcodes/css/jay.css"] [unique_id "aji82gTtwFkaTR0k__p99QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-06-20 06:09:46
(2 months ago)
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210740) triggered by 146.112.163.52 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jun 20 02:09:39.925840 2026] [security2:error] [pid 16056:tid 16056] [client 146.112.163.52:23659] ModSecurity: Access denied with code 403 (phase 2). Matched phrase "/Proxy-Connection/" at TX:header_name. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "33"] [id "210740"] [rev "2"] [msg "COMODO WAF: HTTP header is restricted by policy||www.somuchtoread.com|F|4"] [data "/Proxy-Connection/"] [severity "WARNING"] [tag "CWAF"] [tag "HTTP"] [hostname "www.somuchtoread.com"] [uri "/favicon.ico"] [unique_id "ajYuo-FoYUU3IurlbCCklwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack