๐ฉ๐ช
srtzero
2026-06-14 13:59:10
(9 hours ago)
172.70.248.92 - - [14/Jun/2026:15:59:10 +0200] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 162 " ...
show more
172.70.248.92 - - [14/Jun/2026:15:59:10 +0200] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 162 "-" "http://convergencegaming.net/wp-admin/install.php?step=1"
...
show less
Port Scan
Bad Web Bot
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-06-08 05:09:55
(6 days ago)
172.70.248.92 - - [08/Jun/2026:08:09:55 +0300] "GET /wp-json/psd/v1/get-details HTTP/2.0" 404 0 "-" ...
show more
172.70.248.92 - - [08/Jun/2026:08:09:55 +0300] "GET /wp-json/psd/v1/get-details HTTP/2.0" 404 0 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-04 14:45:52
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Jun 04 10:45:48.182837 2026] [security2:error] [pid 8070:tid 8070] [client 172.70.248.92:9454] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "belgiophar.org"] [uri "/.git/config"] [unique_id "aiGPnGziDYQXc_rO8_CWSAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ฌ
Stoyko Stoykov
2026-06-03 10:46:02
(1 week ago)
172.70.248.92 - - [03/Jun/2026:13:46:02 +0300] "GET /client/.env HTTP/2.0" 404 0 "-" "Mozilla/5.0 (X ...
show more
172.70.248.92 - - [03/Jun/2026:13:46:02 +0300] "GET /client/.env HTTP/2.0" 404 0 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 17:54:44
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 13:54:37.475547 2026] [security2:error] [pid 18269:tid 18374] [client 172.70.248.92:9659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "robertbellamystudio.com"] [uri "/.git/config"] [unique_id "ah8Y3YSUtesdAd-7nWWphQAAAYI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
Martin Lundstrom
2026-06-02 16:40:09
(1 week ago)
https://www.eagleeye-intelligence.com โ WordPress attack. Automatically detected and blocked.
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 14:56:27
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 10:56:21.370701 2026] [security2:error] [pid 27683:tid 27683] [client 172.70.248.92:13976] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "mikedeutsch.com"] [uri "/.git/config"] [unique_id "ah7vFZ_ie9s6yryOHxIyKAAAABk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 10:27:45
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 06:27:39.504238 2026] [security2:error] [pid 31060:tid 31060] [client 172.70.248.92:9405] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "circle-h-growers.com"] [uri "/.git/config"] [unique_id "ah6wGxMsQz2bAq1aeQrF8QAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 08:27:13
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 04:27:05.884044 2026] [security2:error] [pid 13318:tid 13346] [client 172.70.248.92:9659] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "21370.com"] [uri "/.git/config"] [unique_id "ah6T2QCp8j-uW1lT6IlDPgAAABY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-06-02 08:00:57
(1 week ago)
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Port ...
show more
(mod_security) mod_security (id:210492) triggered by 172.70.248.92 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 02 04:00:52.612219 2026] [security2:error] [pid 3237:tid 3237] [client 172.70.248.92:10094] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "ftiptondds.com"] [uri "/.git/config"] [unique_id "ah6NtCAmd5LFQJtAJ1byKgAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
mnsf
2026-06-02 05:05:42
(1 week ago)
Abuse Detected (1)
Brute-Force
Web App Attack
๐ฉ๐ช
srtzero
2026-05-31 21:50:43
(2 weeks ago)
172.70.248.92 - - [31/May/2026:23:50:43 +0200] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 162 " ...
show more
172.70.248.92 - - [31/May/2026:23:50:43 +0200] "GET /wp-admin/install.php?step=1 HTTP/2.0" 404 162 "-" "http://convergencegaming.net/wp-admin/install.php?step=1"
...
show less
Port Scan
Bad Web Bot
Web App Attack
๐บ๐ธ
WellSpring
2026-05-28 12:48:45
(2 weeks ago)
wordpress scan on 401.today/wp-admin/install.php โ WellSpr.ing/NetSentinel civic-AI security layer
Bad Web Bot
Web App Attack
๐ฌ๐ง
sandra361
2026-05-28 07:11:04
(2 weeks ago)
Port scan detected: 19 attempts across 1 ports (443). | Evidence: REAPER_TARPIT:IN=enp1s0f0 OUT= SRC ...
show more
Port scan detected: 19 attempts across 1 ports (443). | Evidence: REAPER_TARPIT:IN=enp1s0f0 OUT= SRC=172.70.248.92 LEN=60 TOS=0x00 PREC=0x00 TTL=55 ID=3427 DF PROTO=TCP SPT=30711 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0
show less
Port Scan
๐บ๐ธ
freeutka
2026-05-12 19:32:35
(1 month ago)
WordPress brute-force login attempt on wp-login.php.
Brute-Force
Web App Attack