๐ท๐บ
DZBOT
2026-07-12 06:41:41
(1 week ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ฉ๐ช
hackthetime
2026-07-09 06:01:55
(1 week ago)
Tried to access /wp-admin/install.php (auto-added by Hype UI)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-17 14:09:07
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 17 10:09:02.116738 2026] [security2:error] [pid 18459:tid 18459] [client 162.158.183.90:9833] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webped.batw.net"] [uri "/.git/config"] [unique_id "ajKqft19Db3tZRoeMPAUZAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-06-15 06:48:17
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-08 22:24:15
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 08 18:24:09.025264 2026] [security2:error] [pid 3675:tid 3675] [client 162.158.183.90:13827] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "merrilymovie.robertmcatee.com"] [uri "/.git/config"] [unique_id "aidBCShlE2uqufneTCutTgAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-05-31 21:52:29
(1 month ago)
wordpress scan on worldtrashday.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security ...
show more
wordpress scan on worldtrashday.org/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
show less
Bad Web Bot
Web App Attack
๐ท๐บ
DZBOT
2026-05-20 06:20:46
(2 months ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
Anonymous
2026-01-24 02:30:04
(5 months ago)
| SQL injection attempt.
Hacking
SQL Injection
Web App Attack
๐ฏ๐ต
S.O.B.A. Dev.
2025-11-24 15:08:41
(7 months ago)
Persistent port scanning or vulnerability scanning
Port Scan
๐บ๐ธ
TPI-Abuse
2025-06-10 09:16:35
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 10 05:16:27.888732 2025] [security2:error] [pid 3510073:tid 3510073] [client 162.158.183.90:48864] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.samimartin.com"] [uri "/api/.env"] [unique_id "aEf365FJYy4GCJS4i3kNdQAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
oh.mg
2025-06-03 14:06:05
(1 year ago)
[Tue Jun 03 16:06:04.030450 2025] [security2:error] [pid 1736559:tid 1736569] [client 162.158.183.90 ...
show more
[Tue Jun 03 16:06:04.030450 2025] [security2:error] [pid 1736559:tid 1736569] [client 162.158.183.90:56184] [client 162.158.183.90] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [ver "OWASP_CRS/4.10.0-dev"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "mailboxes.mrman.net"] [uri "/wetty/socket.io/"] [unique_id "aD8BTBDhR-bP8PoqMS3ytwAAAIg"], referer: https://mailboxes.mrman.net/wetty/
[Tue Jun 03 16:06:04.108452 2025] [security2:error] [pid 1736559:tid 1736585] [client 162.158.183.90:56184] [client 162.158.183.90] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:blocking_inbound_anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "233"] [id "949110"] [msg "Inbound Anomaly Sc
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
Rip
2025-05-24 05:07:06
(1 year ago)
Attacks against MySQL, MariaDB, and/or phpMyAdmin.
...
Port Scan
Web App Attack
๐บ๐ธ
Rip
2025-05-18 07:53:25
(1 year ago)
Attacks against MySQL, MariaDB, and/or phpMyAdmin.
...
Port Scan
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-04-26 04:21:29
(1 year ago)
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.183.90 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 26 00:21:25.751722 2025] [security2:error] [pid 14933:tid 14933] [client 162.158.183.90:38940] [client 162.158.183.90] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pixacast.com"] [uri "/.git/config"] [unique_id "aAxfRdbWr2PhDTvjnh2FLwAAACU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ท๐บ
john butt
2025-04-26 00:17:06
(1 year ago)
Invalid user โ brute-force or recon
FTP Brute-Force
Blog Spam