๐ฉ๐ช
srtzero
2026-07-18 20:45:45
(1 day ago)
162.158.110.164 - - [18/Jul/2026:22:45:44 +0200] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 162 ...
show more
162.158.110.164 - - [18/Jul/2026:22:45:44 +0200] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 162 "-" "http://convergencegaming.net/wp-admin/install.php?step=1"
...
show less
Port Scan
Bad Web Bot
Web App Attack
๐ซ๐ท
RootOPSOVH
2026-07-15 13:19:58
(4 days ago)
GET /wp-admin/install.php?step=1 | UA: http://rootops.ovh/wp-admin/install.php?step=1
Web Spam
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-07-08 17:44:24
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ฎ
habs
2026-07-07 23:57:32
(1 week ago)
162.158.110.164 - - [08/Jul/2026:02:57:31 +0300] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 146 ...
show more
162.158.110.164 - - [08/Jul/2026:02:57:31 +0300] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 146 "-" "http://koiranpeti.eu/wp-admin/install.php?step=1"
...
show less
Web App Attack
๐บ๐ธ
WellSpring
2026-06-04 18:58:01
(1 month ago)
wordpress scan on covenantcaptcha.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI securi ...
show more
wordpress scan on covenantcaptcha.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 03:57:48
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:57:44.862907 2026] [security2:error] [pid 23765:tid 23765] [client 162.158.110.164:9894] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "bfpsamoa.com"] [uri "/.git/config"] [unique_id "aiD3uAmnWhwoqnuJZoLQWAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 03:36:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 03 23:36:17.725768 2026] [security2:error] [pid 13619:tid 13619] [client 162.158.110.164:13811] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "okeetokee.net"] [uri "/.git/config"] [unique_id "aiDysXD_vgExBU3gcYOmWwAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-06-03 15:45:20
(1 month ago)
Crappy bot probing nonexistent /.env
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-05-16 04:32:05
(2 months ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host
๐บ๐ธ
TPI-Abuse
2026-04-08 01:42:39
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 21:42:34.243071 2026] [security2:error] [pid 1817425:tid 1817425] [client 162.158.110.164:9268] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.drstiso.com"] [uri "/.git/refs/heads/master"] [unique_id "adWyiuUOVe5Oxqn7E6tzqgAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 10:45:48
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Apr 07 06:45:41.039245 2026] [security2:error] [pid 1300483:tid 1300483] [client 162.158.110.164:9301] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "owldreamllc.com"] [uri "/.env"] [unique_id "adTgVTe7Q2fLlwMPXqELhgAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 19:53:55
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 15:53:44.306574 2026] [security2:error] [pid 1275:tid 1275] [client 162.158.110.164:10094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "amazinggraceministries.net"] [uri "/.git/refs/heads/master"] [unique_id "adFsSLd_JYzP_959ySMIUAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 14:31:13
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 10:31:09.100808 2026] [security2:error] [pid 29294:tid 29294] [client 162.158.110.164:10659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.emisoni.com"] [uri "/.git/refs/heads/main"] [unique_id "adEgrXOQ3wQd-YY2Z7UlsgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 11:36:55
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 07:36:49.879039 2026] [security2:error] [pid 23505:tid 23505] [client 162.158.110.164:11980] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.anayjosecollectionclub.com"] [uri "/.env.example"] [unique_id "adD30VjW4qmEJCbZdg-aoQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 06:45:44
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.110.164 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 02:45:36.460763 2026] [security2:error] [pid 17219:tid 17219] [client 162.158.110.164:13841] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.tersch.com"] [uri "/.git/refs/heads/main"] [unique_id "adCzkE5z0XUj2Y2BY6Z2cwAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack