๐ฉ๐ช
Sรฉfora Srl
2026-08-11 06:04:03
(1 month ago)
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache ...
show more
Bad user agents ignoring web crawling rules. Draing bandwidth - detected by Fail2Ban in plesk-apache-badbot jail
show less
Bad Web Bot
๐ง๐ช
madeit
2026-08-09 02:34:23
(1 month ago)
Web App Attack
Anonymous
2026-08-07 23:23:47
(1 month ago)
Blocked by siteaihub.com: auto: matched prefix:/wp-admin/install.php
Web App Attack
Hacking
๐ซ๐ท
Pays d'Angoulรชme
2026-08-05 09:24:21
(1 month ago)
[Drupal AbuseIPDB module] Request path is blacklisted. /wp-admin/core/install.php
Web App Attack
๐ท๐บ
DZBOT
2026-08-04 22:38:30
(1 month ago)
DZBOT: Website Scanning / Scraping
Bad Web Bot
Exploited Host
Web App Attack
๐ณ๐ด
jad-abuse
2026-07-16 03:27:17
(2 months ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 1 sensor(s); 2 hits.
show less
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-13 05:00:31
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 13 01:00:27.145578 2026] [security2:error] [pid 28665:tid 28665] [client 162.158.94.44:13468] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "10bestattorneys.com"] [uri "/.env.sample"] [unique_id "alRw67jKhI6jdSsoXKjQBQAAABc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-20 02:00:09
(3 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jun 19 22:00:03.850253 2026] [security2:error] [pid 16418:tid 16418] [client 162.158.94.44:13216] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wgs.cc"] [uri "/.git/config"] [unique_id "ajX0IwxzwA-og17dbv9EYwAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ด
jad-abuse
2026-06-09 17:39:17
(3 months ago)
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. ...
show more
ActiveDefense automated detection: malicious HTTP scanning / exploit attempts. Signatures: wp_admin. Observed by 0 sensor(s); 1 hits.
show less
Brute-Force
Web App Attack
๐ณ๐ฑ
COMPLEX
2026-06-05 02:41:35
(3 months ago)
Unsolicited TCP traffic | Action: DROP | Port 8443
Brute-Force
Anonymous
2026-05-23 04:53:29
(4 months ago)
[Sat May 23 06:53:19.189789 2026] [authz_core:error] [pid 8786] [client 162.158.94.44:13870] AH01630 ...
show more
[Sat May 23 06:53:19.189789 2026] [authz_core:error] [pid 8786] [client 162.158.94.44:13870] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat May 23 06:53:19.538121 2026] [authz_core:error] [pid 8786] [client 162.158.94.44:13870] AH01630: client denied by server configuration: /etc/httpd/htdocs
[Sat May 23 06:53:28.556797 2026] [authz_core:error] [pid 8791] [client 162.158.94.44:13631] AH01630: client denied by server configuration: /etc/httpd/htdocs
...
show less
Web App Attack
๐ณ๐ฑ
ipoac.nl
2026-05-21 23:17:19
(4 months ago)
ipoac.nl:80 162.158.94.44 - - [22/May/2026:01:17:18 +0200] - "GET /wp-admin/install.php?step=1 HTTP/ ...
show more
ipoac.nl:80 162.158.94.44 - - [22/May/2026:01:17:18 +0200] - "GET /wp-admin/install.php?step=1 HTTP/1.1" 302 955 "-" "http://-/wp-admin/install.php?step=1"
show less
Bad Web Bot
๐บ๐ธ
TPI-Abuse
2026-05-08 11:29:59
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri May 08 07:29:55.296880 2026] [security2:error] [pid 1869:tid 1869] [client 162.158.94.44:13673] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "goldenvalley1.com"] [uri "/.git/config"] [unique_id "af3JM4IWtXEXg6gGuI5FvwAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-08 01:57:32
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu May 07 21:57:28.414164 2026] [security2:error] [pid 5530:tid 5530] [client 162.158.94.44:14156] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "virginialakes395.com"] [uri "/.git/config"] [unique_id "af1DCJGPsfemhoeUdmUH6AAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-29 06:24:09
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 162.158.94.44 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Apr 29 02:24:05.304666 2026] [security2:error] [pid 32762:tid 397] [client 162.158.94.44:11469] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "starwars.onernet.com"] [uri "/.git/config"] [unique_id "afGkBddN7lVxW7arXnDdVgAAAgY"]
show less
Brute-Force
Bad Web Bot
Web App Attack