๐ซ๐ท
Sklurk
2026-07-26 16:13:54
(11 hours ago)
Web App Attack
Web App Attack
๐ฆ๐ฑ
router.al
2026-07-24 06:24:43
(2 days ago)
07/24/2026-06:24:43.393601 162.158.94.104 Protocol: 6 ET HUNTING Request for Webshell in .well-known ...
show more
07/24/2026-06:24:43.393601 162.158.94.104 Protocol: 6 ET HUNTING Request for Webshell in .well-known directory
show less
Hacking
๐ณ๐ด
jad-abuse
2026-07-18 05:00:03
(1 week ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 1 hits.
show less
Brute-Force
Web App Attack
๐บ๐ธ
mawan
2026-06-27 08:55:49
(4 weeks ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ท๐บ
DZBOT
2026-06-26 22:43:34
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐บ๐ธ
mnsf
2026-06-16 05:05:34
(1 month ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-04-06 00:06:50
(3 months ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 21:32:31
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 17:32:26.207258 2026] [security2:error] [pid 9667:tid 9667] [client 162.158.94.104:10123] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.home.theyoungstrategist.com"] [uri "/.git/refs/heads/main"] [unique_id "adGDaozPpCCmXQzWtfOq3AAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 14:50:20
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 10:50:10.092866 2026] [security2:error] [pid 24506:tid 24570] [client 162.158.94.104:11392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.saskiarose.com"] [uri "/.git/index"] [unique_id "adElIoNFfcCdpvyQGukjCgAAAIs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-04-04 13:37:38
(3 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:Cf-Worker. (5025-193)
Hacking
๐บ๐ธ
TPI-Abuse
2026-04-04 10:42:04
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 06:41:55.579408 2026] [security2:error] [pid 1231:tid 1284] [client 162.158.94.104:9731] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.aglsolidwaste.com"] [uri "/.env"] [unique_id "adDq89UnsZvzHqEidZ6HswAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 17:25:05
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 13:24:57.284619 2026] [security2:error] [pid 6040:tid 6040] [client 162.158.94.104:13386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.flickr.abecasis.com"] [uri "/.git/refs/heads/main"] [unique_id "ac_36bSAmARAkkqdDgkkhAAAAA0"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-03 10:16:11
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.104 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Apr 03 06:16:05.489200 2026] [security2:error] [pid 2580:tid 2630] [client 162.158.94.104:10346] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.royalfellows.com"] [uri "/server/.env"] [unique_id "ac-TZRCoyO1NtOEQsWwZcwAAANI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-03-31 06:25:22
(3 months ago)
Blocked Cloudflare Worker request. Pattern match "." at REQUEST_HEADERS:Cf-Worker. (5025-193)
Hacking
๐ซ๐ท
Little Iguana
2026-03-31 03:15:33
(3 months ago)
Attempt to hack Wordpress Login, XMLRPC or other login
Hacking