๐ซ๐ฎ
habs
2026-09-02 04:04:22
(5 hours ago)
162.158.183.16 - - [02/Sep/2026:07:04:22 +0300] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 146 ...
show more
162.158.183.16 - - [02/Sep/2026:07:04:22 +0300] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 146 "-" "http://koiranpeti.eu/wp-admin/install.php?step=1"
...
show less
Web App Attack
๐ง๐ช
madeit
2026-08-27 00:50:57
(6 days ago)
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-20 07:43:08
(1 week ago)
162.158.183.16 - - [20/Aug/2026:10:43:07 +0300] "GET /1.php HTTP/1.1" 301 162 "-" "-"
...
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 04:33:56
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.16 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 00:33:52.777191 2026] [security2:error] [pid 29255:tid 29268] [client 162.158.183.16:14312] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.pecanvalleyestates.net"] [uri "/.git/config"] [unique_id "aoUyMEAq0TA_2YwIQgwyxQAAAQg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-18 11:14:44
(2 weeks ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 03:00:14
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.16 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 23:00:09.353183 2026] [security2:error] [pid 19404:tid 19404] [client 162.158.183.16:10283] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.aticom.net"] [uri "/.git/HEAD"] [unique_id "aoJ5ObVDfHlF39ghrrlmsAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-08-17 02:50:07
(2 weeks ago)
Attempts against non-existent wp-login
Brute-Force
Web App Attack
๐ฉ๐ช
yitzhaq
2026-08-17 02:35:04
(2 weeks ago)
162.158.183.16 - - [17/Aug/2026:04:34:59 +0200] "GET /wp-temp.php HTTP/2.0" 404 55 "-" "-"
162.158.1 ...
show more
162.158.183.16 - - [17/Aug/2026:04:34:59 +0200] "GET /wp-temp.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:34:59 +0200] "GET //wp-admin/js/index.php HTTP/2.0" 404 289 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET /puc.php HTTP/2.0" 404 78 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET //wp-includes/Requests/ HTTP/2.0" 404 289 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET /8.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET /1.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET /about.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET //admin.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET //edit.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET /wp-content/admin.php HTTP/2.0" 404 289 "-" "-"
162.158.183.16 - - [17/Aug/2026:04:35:00 +0200] "GET /inputs.php HTTP/2.0" 40
show less
Web App Attack
Brute-Force
๐บ๐ธ
TPI-Abuse
2026-08-17 01:26:45
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.16 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.16 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 21:26:42.400432 2026] [security2:error] [pid 7954:tid 7954] [client 162.158.183.16:13429] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.birdlovers.net"] [uri "/.git/HEAD"] [unique_id "aoJjUkNk9nJ8LOPoP2YHWQAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-08-14 13:42:10
(2 weeks ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 5 hits.
show less
Brute-Force
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-08-09 22:40:25
(3 weeks ago)
162.158.183.16 - - [10/Aug/2026:01:40:24 +0300] "GET /wp-admin/maint/index.php HTTP/1.1" 301 162 "-" ...
show more
162.158.183.16 - - [10/Aug/2026:01:40:24 +0300] "GET /wp-admin/maint/index.php HTTP/1.1" 301 162 "-" "-"
...
show less
Hacking
Web App Attack
๐ฌ๐ง
OptimusGO
2026-08-06 04:33:50
(3 weeks ago)
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Time ...
show more
Malicious activity detected: web_attack
Server: commstackbc (185.127.18.66)
Attack: web_attack
Timestamp: 2026-08-06 05:33:50 UTC
Log evidence:
08/06/2026-05:33:49.197896 [**] [1:9000060:2] AUTONOMOUS Long-term Reconnaissance [**] [Classification: (null)] [Priority: 2] {TCP} 162.158.183.16:10496 -> 185.127.18.66:80
show less
Port Scan
Brute-Force
๐ฉ๐ช
yitzhaq
2026-08-04 22:01:20
(4 weeks ago)
162.158.183.16 - - [04/Aug/2026:18:39:14 +0200] "GET /akismet.php HTTP/2.0" 404 341 "-" "-"
162.158. ...
show more
162.158.183.16 - - [04/Aug/2026:18:39:14 +0200] "GET /akismet.php HTTP/2.0" 404 341 "-" "-"
162.158.183.16 - - [04/Aug/2026:18:39:14 +0200] "GET /gecko-new.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [04/Aug/2026:18:39:14 +0200] "GET /sky.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [04/Aug/2026:18:39:14 +0200] "GET /a3ampzmbipnkpxeqhqpsanCdefault.php HTTP/2.0" 404 55 "-" "-"
162.158.183.16 - - [04/Aug/2026:18:39:15 +0200] "GET /file5.php HTTP/2.0" 404 78 "-" "-"
162.158.183.16 - - [04/Aug/2026:18:39:15 +0200] "GET /4PJcpMFsD8B.php HTTP/2.0" 404 55 "-" "-"
show less
Web App Attack
Hacking
๐ท๐บ
DZBOT
2026-08-04 06:05:31
(4 weeks ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ซ๐ฎ
habs
2026-08-04 05:58:57
(4 weeks ago)
162.158.183.16 - - [04/Aug/2026:08:58:55 +0300] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 162 ...
show more
162.158.183.16 - - [04/Aug/2026:08:58:55 +0300] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 162 "-" "http://koiranpeti.eu/wp-admin/install.php?step=1"
...
show less
Web App Attack