Anonymous
2026-06-29 17:11:25
(1 day ago)
Web App Attack
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-16 00:02:26
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.49.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.49.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 20:02:19.560234 2026] [security2:error] [pid 28333:tid 28333] [client 162.158.49.4:9238] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.buffaloweddingreception.com"] [uri "/.env.save"] [unique_id "age0C24hA5uqoXV8f1p9zQAAAAc"], referer: https://www.google.com/search?q=webmail.buffaloweddingreception.com
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-15 11:05:14
(1 month ago)
(mod_security) mod_security (id:210492) triggered by 162.158.49.4 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.49.4 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 15 07:04:46.436221 2026] [security2:error] [pid 466:tid 466] [client 162.158.49.4:12799] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.currency.ic1.biz"] [uri "/.env.local"] [unique_id "agb9ztrpnBJNT-aeTbWhHwAAAAU"], referer: https://www.google.com/search?q=www.currency.ic1.biz
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-05-13 22:03:08
(1 month ago)
Auto-ban: >3000 req/min op 2026-05-13
Web App Attack
SSH
Hacking
๐บ๐ฆ
URAN Publishing Service
2026-05-04 14:07:59
(1 month ago)
162.158.49.4 - - [04/May/2026:17:07:53 +0300] "GET /wp-content/plugins/hellopress/wp_filemanager.php ...
show more
162.158.49.4 - - [04/May/2026:17:07:53 +0300] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 762 "-" "-"
162.158.49.4 - - [04/May/2026:17:07:59 +0300] "GET /wp-includes/ID3/about.php HTTP/1.1" 404 683 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-23 00:12:48
(2 months ago)
162.158.49.4 - - [23/Apr/2026:03:12:47 +0300] "GET /wp-content/radio.php HTTP/1.1" 404 683 "-" "-"
. ...
show more
162.158.49.4 - - [23/Apr/2026:03:12:47 +0300] "GET /wp-content/radio.php HTTP/1.1" 404 683 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-22 02:00:48
(2 months ago)
162.158.49.4 - - [22/Apr/2026:05:00:45 +0300] "GET /wp-admin/network/edit.php HTTP/1.1" 404 683 "-" ...
show more
162.158.49.4 - - [22/Apr/2026:05:00:45 +0300] "GET /wp-admin/network/edit.php HTTP/1.1" 404 683 "-" "-"
162.158.49.4 - - [22/Apr/2026:05:00:47 +0300] "GET /amax.php HTTP/1.1" 404 683 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-04-04 12:01:32
(2 months ago)
162.158.49.4 - - [04/Apr/2026:15:01:22 +0300] "GET /wp-content/plugins/hellopress/wp_filemanager.php ...
show more
162.158.49.4 - - [04/Apr/2026:15:01:22 +0300] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 762 "-" "-"
162.158.49.4 - - [04/Apr/2026:15:01:32 +0300] "GET /wp-includes/nano.php HTTP/1.1" 404 683 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-03-30 18:47:34
(3 months ago)
162.158.49.4 - - [30/Mar/2026:21:47:30 +0300] "GET /wp-admin/css/bolt.php HTTP/1.1" 404 251 "-" "-"
...
show more
162.158.49.4 - - [30/Mar/2026:21:47:30 +0300] "GET /wp-admin/css/bolt.php HTTP/1.1" 404 251 "-" "-"
162.158.49.4 - - [30/Mar/2026:21:47:33 +0300] "GET /wp-content/themes/index.php HTTP/1.1" 404 251 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-03-26 09:57:06
(3 months ago)
162.158.49.4 - - [26/Mar/2026:11:57:03 +0200] "GET /wp-admin/admin.php HTTP/1.1" 404 252 "-" "-"
162 ...
show more
162.158.49.4 - - [26/Mar/2026:11:57:03 +0200] "GET /wp-admin/admin.php HTTP/1.1" 404 252 "-" "-"
162.158.49.4 - - [26/Mar/2026:11:57:05 +0200] "GET /wp-includes/app.php HTTP/1.1" 404 251 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-03-07 18:20:20
(3 months ago)
162.158.49.4 - - [07/Mar/2026:20:20:04 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php ...
show more
162.158.49.4 - - [07/Mar/2026:20:20:04 +0200] "GET /wp-content/plugins/hellopress/wp_filemanager.php HTTP/1.1" 404 330 "-" "-"
162.158.49.4 - - [07/Mar/2026:20:20:20 +0200] "GET /wp-content/admin.php HTTP/1.1" 404 251 "-" "-"
...
show less
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-02-26 05:18:07
(4 months ago)
162.158.49.4 - - [26/Feb/2026:07:18:03 +0200] "GET /wp-content/plugins/index.php HTTP/1.1" 404 251 " ...
show more
162.158.49.4 - - [26/Feb/2026:07:18:03 +0200] "GET /wp-content/plugins/index.php HTTP/1.1" 404 251 "-" "-"
162.158.49.4 - - [26/Feb/2026:07:18:07 +0200] "GET /wp-includes/certificates/plugins.php HTTP/1.1" 404 251 "-" "-"
...
show less
Web App Attack
๐จ๐ฆ
yukon.ca
2026-02-24 21:41:07
(4 months ago)
Web Server Enforcement Violation: HTTP Webshells Activity
Port:80
Hacking
Exploited Host
๐บ๐ธ
mnsf
2026-01-03 00:05:22
(5 months ago)
Too many Status 40X (11)
Brute-Force
Web App Attack
๐ฟ๐ฆ
agentics
2025-11-21 00:46:28
(7 months ago)
162.158.49.4 report :
DDoS Attack
FTP Brute-Force
Port Scan
Hacking
Spoofing
Brute-Force
Exploited Host