๐ซ๐ท
RootOPSOVH
2026-06-14 15:07:07
(2 days ago)
GET /wp-admin/install.php?step=1 | UA: http://rootops.ovh/wp-admin/install.php?step=1
Web Spam
Bad Web Bot
Web App Attack
๐ฉ๐ช
langenkamp-media
2026-06-13 10:10:05
(3 days ago)
Fail2Ban: Banned from jail nginx-nohome on 3dausdu.de
Web App Attack
๐ฉ๐ช
langenkamp-media
2026-06-10 17:28:43
(6 days ago)
Fail2Ban: Banned from jail nginx-nohome on 3dausdu.de
Web App Attack
๐บ๐ธ
Rocky Mountain Bioengineering Symposium
2026-06-07 21:32:51
(1 week ago)
172.70.248.78 - - [07/Jun/2026:15:32:50 -0600] "GET /.git/config HTTP/2.0" 301 390 "-" "curl/8.4.0"
...
show more
172.70.248.78 - - [07/Jun/2026:15:32:50 -0600] "GET /.git/config HTTP/2.0" 301 390 "-" "curl/8.4.0"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 17:14:41
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 13:14:35.613528 2026] [security2:error] [pid 3172:tid 3172] [client 172.70.248.78:12227] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "kobraagencies.com"] [uri "/.git/config"] [unique_id "ah8Pex16cNdi9W-nvJHCPwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 12:06:05
(2 weeks ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-05-31 23:03:48
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun May 31 19:03:44.392977 2026] [security2:error] [pid 13880:tid 13952] [client 172.70.248.78:13839] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "graphicninjastudios.com.kincers.com"] [uri "/.git/config"] [unique_id "ahy-UMORuA247XXdAJfgAgAAAZA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
strxmpp
2026-05-29 00:32:04
(2 weeks ago)
172.70.248.78 - - [29/May/2026:02:32:02 +0200] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 668 " ...
show more
172.70.248.78 - - [29/May/2026:02:32:02 +0200] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 668 "-" "http://in-hagello.ch/wp-admin/install.php?step=1"
...
show less
Bad Web Bot
๐บ๐ธ
WellSpring
2026-05-27 05:18:13
(2 weeks ago)
wordpress scan on 580.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐ซ๐ฎ
Erpelstolz
2026-05-26 19:02:40
(2 weeks ago)
external host: 172.70.248.78 - - [26/May/2026:21:02:39 +0200] "GET /wp-admin/install.php?step=1 HTTP ...
show more
external host: 172.70.248.78 - - [26/May/2026:21:02:39 +0200] "GET /wp-admin/install.php?step=1 HTTP/1.1" 301 325 "-" "http://erpelstolz.com/wp-admin/install.php?step=1" CF-Ray:a01f090f38b5c518-FRA CF-IP:-
show less
Web App Attack
๐ฆ๐บ
trentwiles.com
2026-05-18 17:24:32
(4 weeks ago)
Unauthorized connection attempt detected from IP address 172.70.248.78 to port 443 [SYD]
Port Scan
๐ฉ๐ช
FeG Deutschland
2026-05-12 23:20:56
(1 month ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-07 02:58:50
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Apr 06 22:58:45.826538 2026] [security2:error] [pid 795198:tid 795198] [client 172.70.248.78:9348] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "freemanfoundationcle.org"] [uri "/.env.json"] [unique_id "adRy5ecry1K_k3nwmYH6vgAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-06 02:48:58
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Apr 05 22:48:54.031194 2026] [security2:error] [pid 1855:tid 1855] [client 172.70.248.78:10256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.misscharlottemusic.com"] [uri "/.git/index"] [unique_id "adMfFkUHa2ry78tcsbpkGwAAACk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-04-04 11:23:18
(2 months ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.78 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Apr 04 07:23:12.955728 2026] [security2:error] [pid 1089:tid 1089] [client 172.70.248.78:9271] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mail.duckysoup.com"] [uri "/.git/refs/heads/main"] [unique_id "adD0oFjcb-XDjn-IuzNquwAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack