๐ฎ๐ฉ
David Koswari
2026-07-29 05:22:00
(3 days ago)
REQ_BLOCKED_SECURITY
DDoS Attack
FTP Brute-Force
Ping of Death
Port Scan
Hacking
SQL Injection
Spoofing
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
IoT Targeted
๐ง๐ช
Ivo Vynckier
2026-07-28 12:23:00
(4 days ago)
168.144.165.176 - - [27/Jul/2026:19:18:39 +0200] "GET /.vscode/sftp.json HTTP/1.1" 301 303 "-" "Mozi ...
show more
168.144.165.176 - - [27/Jul/2026:19:18:39 +0200] "GET /.vscode/sftp.json HTTP/1.1" 301 303 "-" "Mozila/5.0"
168.144.165.176 - - [27/Jul/2026:19:18:39 +0200] "GET /prevlaravel/sftp-config.json HTTP/1.1" 301 314 "-" "Mozila/5.0"
168.144.165.176 - - [27/Jul/2026:19:18:39 +0200] "GET /sftp-config.json HTTP/1.1" 301 302 "-" "Mozila/5.0"
168.144.165.176 - - [27/Jul/2026:19:18:39 +0200] "GET /sftp.json HTTP/1.1" 301 295 "-" "Mozila/5.0"
168.144.165.176 - - [27/Jul/2026:19:18:44 +0200] "GET /prevlaravel/sftp-config.json HTTP/1.1" 404 2322 "http://spielberg-ocr.com/prevlaravel/sftp-config.json" "Mozila/5.0"
168.144.165.176 - - [27/Jul/2026:19:18:44 +0200] "GET /.vscode/sftp.json HTTP/1.1" 404 2322 "http://spielberg-ocr.com/.vscode/sftp.json" "Mozila/5.0"
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 19:06:42
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 15:06:38.604548 2026] [security2:error] [pid 21015:tid 21015] [client 168.144.165.176:57445] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.creationorevolution.net"] [uri "/wp-config.php"] [unique_id "amesPq1llTyb43bi7JnrbgAAAAE"], referer: http://www.originsresource.org/wp-config.php
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 18:46:26
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 14:46:18.044888 2026] [security2:error] [pid 1594840:tid 1594840] [client 168.144.165.176:52374] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.midwayisland.com"] [uri "/wp-config.php"] [unique_id "amenelVG5iI-szAXUscu9QAAABM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 18:10:09
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 14:10:04.356486 2026] [security2:error] [pid 502268:tid 502268] [client 168.144.165.176:57350] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.hiddenhistory.info"] [uri "/wp-config.php"] [unique_id "amee_EA1xZuGKt0Eh8LBsAAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
nyt
2026-07-27 17:46:42
(4 days ago)
WP Config Probe
Web App Attack
๐ณ๐ฑ
DrLex0
2026-07-27 17:44:02
(4 days ago)
WordPress poking with obvious fake user-agent
168.144.165.176 80 - [27/Jul/2026:17:44:02 +0000] "GE ...
show more
WordPress poking with obvious fake user-agent
168.144.165.176 80 - [27/Jul/2026:17:44:02 +0000] "GET /wp-config.php HTTP/1.1" 404 2402 "-" "Mozila/5.0"
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Lee Daniel
2026-07-27 17:32:45
(4 days ago)
168.144.165.176 - - [27/Jul/2026:13:32:44 -0400] "GET /wp-config.php HTTP/1.1" 404 28907 "http://www ...
show more
168.144.165.176 - - [27/Jul/2026:13:32:44 -0400] "GET /wp-config.php HTTP/1.1" 404 28907 "http://www.consolepassion.co.uk/wp-config.php" "Mozila/5.0"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 16:49:05
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 12:48:59.333446 2026] [security2:error] [pid 1333918:tid 1333918] [client 168.144.165.176:56778] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wgs.cc"] [uri "/wp-config.php"] [unique_id "ameL--ZHQ4m_K0So3IFDIgAAAB8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
ghostwarriors
2026-07-27 16:20:33
(4 days ago)
Webpage scraping
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ฆ
URAN Publishing Service
2026-07-27 16:15:09
(4 days ago)
168.144.165.176 - - [27/Jul/2026:19:15:08 +0300] "GET /wp-config.php HTTP/1.1" 301 633 "-" "Mozila/5 ...
show more
168.144.165.176 - - [27/Jul/2026:19:15:08 +0300] "GET /wp-config.php HTTP/1.1" 301 633 "-" "Mozila/5.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 16:14:57
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 12:14:51.274956 2026] [security2:error] [pid 731994:tid 731994] [client 168.144.165.176:64844] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "pozzolan.org"] [uri "/wp-config.php"] [unique_id "ameD-3tMB1aE-QmoGtavQwAAADc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27 15:41:00
(4 days ago)
GET /wp-config.php HTTP/1.1
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-07-27 15:37:10
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210492) triggered by 168.144.165.176 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jul 27 11:37:02.627593 2026] [security2:error] [pid 2693023:tid 2693043] [client 168.144.165.176:57887] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "internationalboardofstandards.com"] [uri "/wp-config.php"] [unique_id "amd7HhDK0Oes-JjPOYkz_QAAANE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ฎ
danskefilm.dk
2026-07-27 15:30:01
(4 days ago)
wordpress login attempts
Web App Attack