Anonymous
2026-07-18 22:27:53
(1 day ago)
denied traffic to a honeypot network. destination port 53.
Port Scan
Hacking
๐บ๐ธ
TPI-Abuse
2026-06-29 16:56:21
(2 weeks ago)
(mod_security) mod_security (id:210492) triggered by 185.132.187.39 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.132.187.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Jun 29 12:56:13.946967 2026] [security2:error] [pid 8198:tid 8198] [client 185.132.187.39:0] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcalendars.rodrigoaldecoa.com"] [uri "/.env"] [unique_id "akKjrYgRzsS_tH9eqfykWQAAACI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-05-03 05:44:20
(2 months ago)
Excessive 404/403 errors
Brute-Force
๐ท๐บ
sms.ru
2026-05-03 01:09:43
(2 months ago)
/wp-admin/maint/
Web App Attack
๐ฆ๐บ
oncord
2026-04-22 21:59:26
(2 months ago)
Form spam
Web Spam
๐ช๐ธ
gnom4ik
2026-03-31 15:30:17
(3 months ago)
ban-reviewer auto report; ip=185.132.187.39; scenario=http:scan; verdict=valid_ban; confidence=0.90; ...
show more
ban-reviewer auto report; ip=185.132.187.39; scenario=http:scan; verdict=valid_ban; confidence=0.90; categories=14,15,18; active_decisions=1; lookback_decisions=1; nginx_requests=0; appsec_matches=0; auth_events=0; kernel_events=0; signals=scanned 23 ports in 6m
show less
Port Scan
Hacking
Brute-Force
๐บ๐ธ
wteiken
2026-03-20 03:05:17
(4 months ago)
www.teiken.org:443 185.132.187.39:42701 - - [19/Mar/2026:23:04:37 -0400] "GET /wp-content/themes/cal ...
show more
www.teiken.org:443 185.132.187.39:42701 - - [19/Mar/2026:23:04:37 -0400] "GET /wp-content/themes/calmly/issue.php HTTP/1.1" 404 4288 "http://teiken.org//wp-content/themes/calmly/issue.php" "Go-http-client/1.1"
www.teiken.org:443 185.132.187.39:44403 - - [19/Mar/2026:23:05:12 -0400] "GET /wp-includes/ID3/index.php HTTP/1.1" 404 4289 "http://teiken.org//wp-includes/ID3/index.php" "Go-http-client/1.1"
www.teiken.org:443 185.132.187.39:44403 - - [19/Mar/2026:23:05:13 -0400] "GET /wp-admin/images/index.php HTTP/1.1" 404 571 "http://teiken.org//wp-admin/images/index.php" "Go-http-client/1.1"
www.teiken.org:443 185.132.187.39:44403 - - [19/Mar/2026:23:05:14 -0400] "GET /.well-known/dropdown.php HTTP/1.1" 404 571 "http://teiken.org//.well-known/dropdown.php" "Go-http-client/1.1"
www.teiken.org:443 185.132.187.39:44403 - - [19/Mar/2026:23:05:14 -0400] "GET /wp-includes/js/index.php HTTP/1.1" 404 571 "http://teiken.org//wp-includes/js/index.php" "Go-http-client/1.1"
www.teiken.org:443 185.132.18
...
show less
Web App Attack
๐บ๐ธ
lavnet.net
2026-03-19 23:59:41
(4 months ago)
185.132.187.39 - - [19/Mar/2026:23:59:36 +0000] "GET /wp-content/plugins/hello.php HTTP/2.0" 404 192 ...
show more
185.132.187.39 - - [19/Mar/2026:23:59:36 +0000] "GET /wp-content/plugins/hello.php HTTP/2.0" 404 1921 "http://abbrown.com//wp-content/plugins/hello.php" "Go-http-client/2.0"
185.132.187.39 - - [19/Mar/2026:23:59:37 +0000] "GET /wp-content/plugins/index.php HTTP/2.0" 404 1879 "http://abbrown.com//wp-content/plugins/index.php" "Go-http-client/2.0"
185.132.187.39 - - [19/Mar/2026:23:59:38 +0000] "GET /wp-content/themes/about.php HTTP/2.0" 404 1879 "http://abbrown.com//wp-content/themes/about.php" "Go-http-client/2.0"
185.132.187.39 - - [19/Mar/2026:23:59:38 +0000] "GET /wp-content/themes/index.php HTTP/2.0" 404 1855 "http://abbrown.com//wp-content/themes/index.php" "Go-http-client/2.0"
185.132.187.39 - - [19/Mar/2026:23:59:39 +0000] "GET /wp-content/themes/admin.php HTTP/2.0" 404 1879 "http://abbrown.com//wp-content/themes/admin.php" "Go-http-client/2.0"
185.132.187.39 - - [19/Mar/2026:23:59:40 +0000] "GET /wp-includes/Text/about.php HTTP/2.0" 404 1878 "http://abbrown.com//wp-includes/Tex
...
show less
Brute-Force
๐ฉ๐ช
FeG Deutschland
2026-03-18 09:41:52
(4 months ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 124
Exploited Host
Web App Attack
๐บ๐ธ
lostswordfish.com
2026-03-18 04:40:04
(4 months ago)
Wordfence waf block on registrymatters
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-03-14 19:25:09
(4 months ago)
(mod_security) mod_security (id:210492) triggered by 185.132.187.39 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 185.132.187.39 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Mar 14 15:25:06.395468 2026] [security2:error] [pid 18042:tid 18042] [client 185.132.187.39:35711] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/sftp-config.json" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "lundtrading.com"] [uri "/sftp-config.json"] [unique_id "abW2EqcS3v4aNzgqcmJ1YwAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
BlueWire Hosting
2026-03-11 03:02:06
(4 months ago)
Bad bot ignoring robot.txt
Bad Web Bot
๐บ๐ฆ
URAN Publishing Service
2026-03-11 01:45:50
(4 months ago)
185.132.187.39 - - [11/Mar/2026:03:45:48 +0200] "GET /wp-content/plugins/semrush/x.php HTTP/1.1" 404 ...
show more
185.132.187.39 - - [11/Mar/2026:03:45:48 +0200] "GET /wp-content/plugins/semrush/x.php HTTP/1.1" 404 2835 "http://theunj.org//wp-content/plugins/semrush/x.php" "Go-http-client/1.1"
185.132.187.39 - - [11/Mar/2026:03:45:49 +0200] "GET /wp-content/plugins/hello-plus/classes/ehp-sarang.php HTTP/1.1" 404 292 "http://theunj.org//wp-content/plugins/hello-plus/classes/ehp-sarang.php" "Go-http-client/1.1"
...
show less
Web App Attack
๐บ๐ธ
masterguru
2026-03-11 00:00:43
(4 months ago)
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (110 ...
show more
BAD BOT - Detected and Blocked.. Matched phrase "go-http-client" at REQUEST_HEADERS:User-Agent. (1100000-165)
show less
Bad Web Bot
๐จ๐ญ
backslash
2026-02-28 16:51:00
(4 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot