๐ณ๐ฑ
ParaBug
2026-02-10 15:32:44
(4 months ago)
154.213.160.190 - - [10/Feb/2026:16:32:44 +0100] "GET /admin/.git/config HTTP/1.1" 301 559 "-" "Mozi ...
show more
154.213.160.190 - - [10/Feb/2026:16:32:44 +0100] "GET /admin/.git/config HTTP/1.1" 301 559 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 23:27:16
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 18:27:11.910395 2025] [security2:error] [pid 22088:tid 22088] [client 154.213.160.190:28819] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keeftone.com"] [uri "/.git/HEAD"] [unique_id "aVBrT8my17dnJgDW_ec8bwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 22:48:10
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 17:48:01.828679 2025] [security2:error] [pid 12628:tid 12628] [client 154.213.160.190:28725] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "vabq.com"] [uri "/.svn/wc.db"] [unique_id "aVBiIb05sTLI2l7-ZNF9zgAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 20:16:29
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 15:16:24.031174 2025] [security2:error] [pid 5501:tid 5501] [client 154.213.160.190:57797] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "10besthotels.com"] [uri "/.svn/wc.db"] [unique_id "aVA-mOaaLVaciLNXDK-eFwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-27 16:18:05
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Dec 27 11:17:58.180101 2025] [security2:error] [pid 28493:tid 28493] [client 154.213.160.190:34587] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "villandance.com"] [uri "/.svn/wc.db"] [unique_id "aVAGtsgSS_-7OMJKxMDBuQAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-12-26 13:00:12
(5 months ago)
"GET /.aws/credentials HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
OceanTreasure
2025-12-26 08:40:09
(5 months ago)
tcp/80; /.env* dotfile probe (R21): "GET /.env" @ 2025-12-26T08:38:29Z
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 05:36:05
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 25 00:35:59.895015 2025] [security2:error] [pid 25612:tid 25612] [client 154.213.160.190:37043] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.jiggaboojones.com"] [uri "/.env"] [unique_id "aSVAP__YgJvZZjro62Dk2QAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 03:59:45
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 22:59:40.095357 2025] [security2:error] [pid 8169:tid 8169] [client 154.213.160.190:49659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.vitaminpolis.vittariadesign.com"] [uri "/.svn/wc.db"] [unique_id "aSUprHN20389o1R_rHA4nAAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 02:10:03
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 21:09:46.998121 2025] [security2:error] [pid 2313:tid 2313] [client 154.213.160.190:48683] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.stuartpearson.net"] [uri "/.svn/wc.db"] [unique_id "aSUP6j2nxn0buxG3lV05pwAAACw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 01:06:00
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 20:05:46.185237 2025] [security2:error] [pid 25900:tid 25900] [client 154.213.160.190:53847] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.deniz-bilgisayar.com"] [uri "/.git/HEAD"] [unique_id "aSUA6iFXItdKUFPTCwp2LwAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-25 00:25:26
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Nov 24 19:25:19.927549 2025] [security2:error] [pid 2608:tid 2608] [client 154.213.160.190:26581] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "files.lmffl.com"] [uri "/.git/HEAD"] [unique_id "aST3b5OOzoz5CWRGpjUWpQAAACM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:36:42
(7 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.190 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:36:34.251702 2025] [security2:error] [pid 18191:tid 18220] [client 154.213.160.190:24785] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.prismatik.com"] [uri "/.svn/wc.db"] [unique_id "aSPg0vZQzvcLISeGO1EZ8gAAARE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Psycho Solutions LLC
2025-10-28 19:54:04
(7 months ago)
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N ...
show more
Detected Wordpress Scanning. - Request Method: GET - Target: {PC} wp-login.php - User Agent: N/A - Timestamp: 10/28/2025 7:54 pm (UTC-6)
show less
Web Spam
Hacking
Bad Web Bot
Web App Attack
๐ฌ๐ง
openstrike.co.uk
2025-10-19 10:59:19
(8 months ago)
12 packets to port 22
Brute-Force
SSH