๐บ๐ธ
mnsf
2026-02-13 05:06:04
(3 months ago)
Too many Status 40X (12)
Scanning/Probing (12)
Brute-Force
Web App Attack
๐บ๐ธ
myagent.site
2026-02-13 04:19:32
(3 months ago)
Blocking for trying to access an exploit file: /.env
Hacking
๐ฌ๐ง
Apache
2026-02-13 03:54:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (FR/France/-): 5 in the last 30 ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (FR/France/-): 5 in the last 300 secs
show less
Brute-Force
Web App Attack
Anonymous
2025-12-30 20:36:30
(5 months ago)
"GET /.env HTTP/1.1"
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 06:14:21
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 01:14:16.224517 2025] [security2:error] [pid 27244:tid 27244] [client 154.213.160.232:49721] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "market1st.com"] [uri "/.svn/wc.db"] [unique_id "aVIcONUXBQynTIXjjaeBKgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-12-29 05:12:03
(5 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Dec 29 00:11:56.546558 2025] [security2:error] [pid 20642:tid 20642] [client 154.213.160.232:52955] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "canonflorida.com"] [uri "/.svn/wc.db"] [unique_id "aVINnMUC3_c2lR9PyyN7ywAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฑ๐ป
garmtech.com
2025-12-04 18:02:58
(6 months ago)
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 20-02.154.213.160.232.web-spam ...
show more
IM360 WAF: Block IP which is in the web-spammers RBL MV:RBL lookup of 20-02.154.213.160.232.web-spammers.v2.rbl.imunify.com._v4 succeeded.
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 04:38:40
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 23:38:34.201051 2025] [security2:error] [pid 13065:tid 13065] [client 154.213.160.232:29553] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.framestoria.com"] [uri "/.git/HEAD"] [unique_id "aSPhStZFDgkkE4RCex9_hgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 03:37:55
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 22:37:48.562047 2025] [security2:error] [pid 22777:tid 22777] [client 154.213.160.232:22275] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "20dekopas.com"] [uri "/.env"] [unique_id "aSPTDECsYrUwGwRVxy_bNgAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-24 02:46:08
(6 months ago)
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Nov 23 21:46:02.044263 2025] [security2:error] [pid 3779004:tid 3779096] [client 154.213.160.232:59675] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.svn/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.culturallyyours.org"] [uri "/.svn/wc.db"] [unique_id "aSPG6idzG6UREfwSkztodQAAAlA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-20 16:58:10
(6 months ago)
(mod_security) mod_security (id:217280) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:217280) triggered by 154.213.160.232 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Nov 20 11:58:03.563251 2025] [security2:error] [pid 15170:tid 15170] [client 154.213.160.232:33009] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?:\\\\n|\\\\r)+(?:get|post|head|options|connect|put|delete|trace|propfind|propatch|mkcol|copy|move|lock|unlock)\\\\s+" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "137"] [id "217280"] [rev "6"] [msg "COMODO WAF: HTTP Request Smuggling Attack||photo-craft.org|F|2"] [data "Matched Data: get found within MATCHED_VAR"] [severity "CRITICAL"] [tag "CWAF"] [tag "Protocol"] [hostname "photo-craft.org"] [uri "/contact.html"] [unique_id "aR9Im9aUCUUCTqz7d7bPTwAAAAY"], referer: http://photo-craft.org/contact.html
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2025-11-13 19:26:56
(6 months ago)
This IP was involved in an brute force and password spray attack on 2025/11/13 13:25:05
Port Scan
Brute-Force
Exploited Host
Web App Attack
๐ซ๐ฎ
YF
2025-11-01 12:01:00
(7 months ago)
xmlrpc.php (Potential DDoS or brute force)
Brute-Force
Web App Attack
Anonymous
2025-10-30 15:29:57
(7 months ago)
WordPress Brute Force
Brute-Force
๐ฎ๐ฉ
BPS-StatisticsIndonesia
2025-10-16 09:45:59
(7 months ago)
WP Login Scan Activities
Web App Attack