π³π±
ipoac.nl
2026-09-30 14:12:23
(5 days ago)
ipoac.nl:80 162.158.108.104 - - [30/Sep/2026:16:12:21 +0200] - "GET /.git/config HTTP/1.1" 302 929 " ...
show more
ipoac.nl:80 162.158.108.104 - - [30/Sep/2026:16:12:21 +0200] - "GET /.git/config HTTP/1.1" 302 929 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36"
show less
Bad Web Bot
π¨πΏ
Prcek
2026-09-29 11:36:27
(6 days ago)
PortScan:HOST=162.158.108.104,DPORTS=80
Port Scan
π§πͺ
madeit
2026-09-27 23:44:41
(1 week ago)
Web App Attack
π―π΅
S.O.B.A. Dev.
2026-09-20 10:55:38
(2 weeks ago)
Persistent port scanning or vulnerability scanning
Port Scan
π³π±
homeshowdomain.nl
2026-09-17 21:59:40
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-09-17
Web App Attack
SSH
Hacking
π§πͺ
madeit
2026-09-14 00:36:42
(3 weeks ago)
Web App Attack
π§π¬
Stoyko Stoykov
2026-09-13 07:17:58
(3 weeks ago)
162.158.108.104 - - [13/Sep/2026:10:17:58 +0300] "GET /wp-content/plugins/wp-plugin-hostgator/vendor ...
show more
162.158.108.104 - - [13/Sep/2026:10:17:58 +0300] "GET /wp-content/plugins/wp-plugin-hostgator/vendor/newfold-labs/wp-module-data/assets/click-events.js HTTP/1.1" 301 162 "-" "Mozilla/5.0 (X11; Linux x86_64; rv:132.0) Gecko/20100101 Firefox/132.0"
...
show less
Hacking
Web App Attack
π©πͺ
Tsumugi Kotobuki
2026-09-08 16:36:09
(3 weeks ago)
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 51 | Len: 60B | Win: ...
show more
Port Scan on Honeypot | Ports: 80/HTTP | Proto: TCP(1) | Flags: all SYN | TTL: 51 | Len: 60B | Win: 65535(1) | F2B/ufw-honeypot@2026-09-08T16:36:08Z
show less
Port Scan
Hacking
πΊπΈ
TPI-Abuse
2026-08-17 05:48:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:48:16.984639 2026] [security2:error] [pid 26086:tid 26086] [client 162.158.108.104:12018] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.bidsonlineauctions.com"] [uri "/.git/config"] [unique_id "aoKgoErPFi8T6Vj6jnHVAwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 04:34:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 00:34:49.097451 2026] [security2:error] [pid 24636:tid 24636] [client 162.158.108.104:9968] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.addenda.gabosoftware.com"] [uri "/.git/config"] [unique_id "aoKPaQ92yyktylHzX_Sx8wAAABI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π§πͺ
madeit
2026-08-17 04:00:24
(1 month ago)
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 03:54:41
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:54:37.102898 2026] [security2:error] [pid 14814:tid 14821] [client 162.158.108.104:11765] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.theaquifer.org"] [uri "/.git/config"] [unique_id "aoKF_WDnqDi7VIF_AJvHtwAAAIU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 03:25:15
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:25:09.737412 2026] [security2:error] [pid 12960:tid 12960] [client 162.158.108.104:14219] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.athletefirst.org"] [uri "/.git/config"] [unique_id "aoJ_FQRa7RWQp_l3cqKQ4AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 01:18:11
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:18:05.478406 2026] [security2:error] [pid 18199:tid 18219] [client 162.158.108.104:11233] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.gqsi.org"] [uri "/.git/config"] [unique_id "aoJhTfsl65fCvzgWbP7XgQAAAVI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-08-17 00:06:24
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.108.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:06:17.732660 2026] [security2:error] [pid 11801:tid 11801] [client 162.158.108.104:9588] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.germanflatts.mohawk-ny.org"] [uri "/.git/config"] [unique_id "aoJQeSm4nejJLPYp9ZS7CQAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack