๐ง๐ช
madeit
2026-08-25 20:12:36
(18 hours ago)
Web App Attack
๐ง๐พ
lns.bz
2026-07-28 16:43:09
(4 weeks ago)
Too many 404 requests [BY]
Web App Attack
๐ง๐พ
lns.bz
2026-07-10 13:21:48
(1 month ago)
Too many 404 requests [BY]
Web App Attack
๐ฉ๐ช
Prodscape
2026-06-07 15:09:00
(2 months ago)
*Port Scan* detected from 162.158.48.176 (LV/Latvia/-). 10 hits in the last 191 seconds; Ports: *; D ...
show more
*Port Scan* detected from 162.158.48.176 (LV/Latvia/-). 10 hits in the last 191 seconds; Ports: *; Direction: in; Trigger: PS_LIMIT
show less
Port Scan
๐บ๐ธ
TPI-Abuse
2026-05-26 17:07:42
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.48.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.48.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue May 26 13:07:33.054433 2026] [security2:error] [pid 6528:tid 6528] [client 162.158.48.176:10368] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "carterrose.com"] [uri "/.env.php"] [unique_id "ahXTVXYNZbza1G_DYjLLxgAAABU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฆ๐บ
screwlooseit.com.au
2026-05-03 06:22:28
(3 months ago)
Blocked by CSF 13 firewall - Rule: IN/India/-
Web App Attack
๐ฉ๐ช
Sรฉfora Srl
2026-04-05 08:01:00
(4 months ago)
Failed attempt detected by Fail2Ban in recidive jail
Brute-Force
๐ฉ๐ช
mk-dizajn.hr
2026-02-09 04:21:10
(6 months ago)
$f2bV_matches
Brute-Force
๐ฆ๐บ
oncord
2025-09-20 04:37:38
(11 months ago)
Form spam
Web Spam
๐บ๐ธ
thefoofighter
2025-08-13 17:47:55
(1 year ago)
[Wed Aug 13 17:47:30.677062 2025] [:error] [pid 1177000] [client 162.158.48.176:19236] [client 162.1 ...
show more
[Wed Aug 13 17:47:30.677062 2025] [:error] [pid 1177000] [client 162.158.48.176:19236] [client 162.158.48.176] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.2"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.cathalmcnally.com"] [uri "/api/.env"] [unique_id "aJzPsvnTjPVBhdw-4gdzpAAAAAw"]
[Wed Aug 13 17:47:55.580349 2025] [:error] [pid 1176995] [client 162.158.48.176:53140] [client 162.158.48.176] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OW
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
thefoofighter
2025-08-06 04:26:53
(1 year ago)
[Wed Aug 06 04:26:52.260710 2025] [:error] [pid 990486] [client 162.158.48.176:23648] [client 162.15 ...
show more
[Wed Aug 06 04:26:52.260710 2025] [:error] [pid 990486] [client 162.158.48.176:23648] [client 162.158.48.176] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 13)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.2"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "www.cathalmcnally.com"] [uri "/comeonin/admin-ajax.php"] [unique_id "aJLZjOMCmuUw9nCdw1YpBAAAAA0"]
[Wed Aug 06 04:26:52.697530 2025] [:error] [pid 990486] [client 162.158.48.176:23648] [client 162.158.48.176] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "93"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 13)"] [severity "CRIT
...
show less
Bad Web Bot
Web App Attack
Anonymous
2025-07-15 12:59:51
(1 year ago)
162.158.48.176 - - [15/Jul/2025:09:59:50 -0300] "GET /wordpress/wp-admin/setup-config.php HTTP/1.1" ...
show more
162.158.48.176 - - [15/Jul/2025:09:59:50 -0300] "GET /wordpress/wp-admin/setup-config.php HTTP/1.1" 404 56 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/137.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-05-30 07:05:12
(1 year ago)
(mod_security) mod_security (id:210730) triggered by 162.158.48.176 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210730) triggered by 162.158.48.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 30 03:05:06.154403 2025] [security2:error] [pid 135157:tid 135157] [client 162.158.48.176:53986] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||kryptonome.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "kryptonome.com"] [uri "/dump.sql"] [unique_id "aDlYovY2hEujtwvetx9DZgAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
mkaraki
2025-04-30 17:58:05
(1 year ago)
1746035884 # Service_probe # SIGNATURE_SEND # source_ip:162.158.48.176 # dst_port:80
...
Port Scan
๐ฏ๐ต
mkaraki
2025-04-29 17:16:17
(1 year ago)
1745946976 # Service_probe # SIGNATURE_SEND # source_ip:162.158.48.176 # dst_port:80
...
Port Scan