๐ฉ๐ช
ger-stg-sifi1
2026-09-21 23:08:34
(1 day ago)
(wordpress) Failed wordpress login using wp-login.php or xmlrpc.php
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2026-09-19 05:24:33
(4 days ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐ง๐ช
madeit
2026-09-18 21:04:47
(4 days ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-10 09:24:03
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 10 05:23:53.532684 2026] [security2:error] [pid 1687:tid 1687] [client 162.158.163.181:10538] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "thediscounttoolbox.com"] [uri "/.env.dist"] [unique_id "aqJ3KY2WAL9T3LlnPX9hNQAAAAI"], referer: https://www.google.com/search?q=thediscounttoolbox.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-09-04 22:00:26
(2 weeks ago)
Auto-ban: >3000 req/min op 2026-09-04
Web App Attack
SSH
Hacking
๐ฉ๐ช
FeG Deutschland
2026-09-02 09:51:16
(3 weeks ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐ง๐ช
madeit
2026-08-24 22:40:41
(4 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:41:53
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:41:45.083338 2026] [security2:error] [pid 24547:tid 24547] [client 162.158.163.181:11281] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.daviddholt.com"] [uri "/.git/HEAD"] [unique_id "aoO4WXrk3fqiJ20hTIv0QQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 06:10:15
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 02:10:06.022967 2026] [security2:error] [pid 25255:tid 25255] [client 162.158.163.181:10197] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.rockitfish.com"] [uri "/.git/config"] [unique_id "aoKlvgAXWeh8v-XJsMrI1wAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:20:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:20:47.276029 2026] [security2:error] [pid 30390:tid 30410] [client 162.158.163.181:12134] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.annaly.org"] [uri "/.git/HEAD"] [unique_id "aoKaL6CXuqGc67PNZZsyTQAAAFE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 05:01:21
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 01:01:16.597283 2026] [security2:error] [pid 25953:tid 25953] [client 162.158.163.181:11651] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.imaginationbyme.com"] [uri "/.git/HEAD"] [unique_id "aoKVnCnycMOSifVbaR1-gQAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:26:13
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:26:06.666924 2026] [security2:error] [pid 5386:tid 5386] [client 162.158.163.181:12492] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.hodgalil.org"] [uri "/.git/config"] [unique_id "aoJ_TtQ_haXB66iN6zBhBwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 02:26:27
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 22:26:23.517961 2026] [security2:error] [pid 20313:tid 20313] [client 162.158.163.181:10165] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "supportourlibrary.org"] [uri "/.git/HEAD"] [unique_id "aoJxTzbslZ5XOmRA4HfhqAAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 00:04:55
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.163.181 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 20:04:48.875330 2026] [security2:error] [pid 28982:tid 28982] [client 162.158.163.181:12314] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.flinthillsveterans.org"] [uri "/.git/HEAD"] [unique_id "aoJQIDwNv_rRpQRmgE6COwAAACQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-16 16:32:19
(1 month ago)
Failed login attempt detected by Fail2Ban in plesk-modsecurity jail
Exploited Host