๐ฉ๐ช
yitzhaq
2026-07-26 18:56:50
(1 month ago)
185.198.243.180 - - [26/Jul/2026:20:56:47 +0200] "GET /ms-themes.php HTTP/1.1" 404 477 "-" "Go-http- ...
show more
185.198.243.180 - - [26/Jul/2026:20:56:47 +0200] "GET /ms-themes.php HTTP/1.1" 404 477 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:47 +0200] "GET /chosen.php?p= HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:47 +0200] "GET /file.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:47 +0200] "GET /flower.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:48 +0200] "GET /gifclass.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:48 +0200] "GET /bless.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:48 +0200] "GET /class-t.api.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:48 +0200] "GET /blurbs.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243.180 - - [26/Jul/2026:20:56:48 +0200] "GET /akcc.php HTTP/1.1" 404 439 "-" "Go-http-client/1.1"
185.198.243
show less
Web App Attack
Hacking
๐ฉ๐ช
Bedios GmbH
2026-07-18 15:57:58
(1 month ago)
Wordpress hacking attempt
Web App Attack
๐ณ๐ฟ
Antinson
2026-04-23 20:41:54
(4 months ago)
Scraping with a high error ratio and request rate
Bad Web Bot
๐จ๐ญ
backslash
2026-04-16 16:18:01
(4 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot
๐บ๐ธ
mnsf
2026-03-04 22:05:16
(5 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
mnsf
2026-03-03 21:05:43
(5 months ago)
Too many Status 40X (12)
Brute-Force
Web App Attack
๐บ๐ธ
WizardsToolkit
2026-02-16 16:40:09
(6 months ago)
attempted to access /old/backup.rar
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-02-15 15:41:23
(6 months ago)
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Feb 15 10:41:19.959456 2026] [security2:error] [pid 20436:tid 20436] [client 185.198.243.180:46645] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||www.pcga.golf|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "www.pcga.golf"] [uri "/bak/dump.sql"] [unique_id "aZHpH0paRTKP6VtLEkQKcgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
Penny Packer
2026-02-11 08:09:12
(6 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
Penny Packer
2026-01-26 03:40:52
(7 months ago)
Fail2Ban apache-tripwires
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-24 11:46:36
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Jan 24 06:46:28.808356 2026] [security2:error] [pid 21358:tid 21358] [client 185.198.243.180:64911] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||loriatrading.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "loriatrading.com"] [uri "/bak/dump.sql"] [unique_id "aXSxFOwANiPk53t9mZDHqwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-01-23 10:35:46
(7 months ago)
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Jan 23 05:35:40.375839 2026] [security2:error] [pid 7234:tid 7234] [client 185.198.243.180:58149] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||bitcointradingsquare.com|F|2"] [data ".dat"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "bitcointradingsquare.com"] [uri "/bak/wallet.dat"] [unique_id "aXNO_Ey11nV1En1ZzbVyyAAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2025-11-18 16:16:29
(9 months ago)
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Po ...
show more
(mod_security) mod_security (id:210730) triggered by 185.198.243.180 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Nov 18 11:16:22.808592 2025] [security2:error] [pid 3980:tid 3998] [client 185.198.243.180:58841] ModSecurity: Access denied with code 403 (phase 2). Match of "pmFromFile userdata_wl_extensions" against "TX:extension" required. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/10_HTTP_HTTP.conf"] [line "27"] [id "210730"] [rev "5"] [msg "COMODO WAF: URL file extension is restricted by policy||liquido.cocoonprojects.com|F|2"] [data ".sql"] [severity "CRITICAL"] [tag "CWAF"] [tag "HTTP"] [hostname "liquido.cocoonprojects.com"] [uri "/bak/mysql.sql"] [unique_id "aRyb1sKL1mgQgjfDcwGG7gAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฏ๐ต
Valhalla
2025-11-15 10:58:14
(9 months ago)
/backups/backup.zip
Hacking
Web App Attack
๐จ๐ญ
backslash
2025-11-10 01:05:07
(9 months ago)
block ruleset bad bot: wordpress scans 82C095539D4FDAF84E2E2FD6B6FC0664645851A8
Bad Web Bot